Vulnerability Description
A vulnerability was determined in BerriAI litellm up to 1.63.1. The impacted element is an unknown function of the file litellm/proxy/management_endpoints/key_management_endpoints.py of the component Admin Key Handler. This manipulation causes improper authorization. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 23781. It is recommended to apply a patch to fix this issue. The vendor was contacted early about this disclosure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Litellm | Litellm | < 1.63.2 |
Related Weaknesses (CWE)
References
- https://gist.github.com/YLChen-007/993c68152b2c770d53590f1684c755d4ExploitThird Party Advisory
- https://github.com/BerriAI/litellm/Product
- https://github.com/BerriAI/litellm/pull/23781Issue TrackingPatch
- https://vuldb.com/cve/CVE-2026-12770Third Party AdvisoryVDB Entry
- https://vuldb.com/submit/811279Third Party AdvisoryVDB EntryExploit
- https://vuldb.com/vuln/372512Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/372512/ctiPermissions RequiredVDB Entry
FAQ
What is CVE-2026-12770?
CVE-2026-12770 is a vulnerability with a CVSS score of 5.4 (MEDIUM). A vulnerability was determined in BerriAI litellm up to 1.63.1. The impacted element is an unknown function of the file litellm/proxy/management_endpoints/key_management_endpoints.py of the component ...
How severe is CVE-2026-12770?
CVE-2026-12770 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-12770?
Check the references section above for vendor advisories and patch information. Affected products include: Litellm Litellm.