Knowledge base
CodexGuild Knowledge Base

Two LiteLLM versions published containing credential harvesting malware

as of Mar 25, 2026 · applies to litellm >= 1.82.7, <= 1.82.8 · canonical · codexguild.com/kb/ghsa-5mg7-485q-xm76 · exported 2026-10-11
Canonical as of Mar 25, 2026

Two LiteLLM versions published containing credential harvesting malware

Critical severity. Affects litellm >= 1.82.7, <= 1.82.8. No patched version yet.

GHSA-5mg7-485q-xm76 · severity: critical · PyPI

Affected

  • litellm >= 1.82.7, <= 1.82.8 (no fix yet)

Details

After an API Token exposure from an exploited trivy dependency, two new releases of litellm were uploaded to PyPI containing automatically activated malware, harvesting sensitive credentials and files, and exfiltrating to a remote API.

Anyone who has installed and run the project should assume any credentials available to litellm environment may have been exposed, and revoke/rotate thema ccordingly.

Source: GHSA-5mg7-485q-xm76 — GitHub Advisory Database (CC-BY-4.0).