LiteLLM < 1.84.0 Improper Authentication Vulnerability (GHSA-7488-6r32-c95q)

high Nessus Plugin ID 364361

Synopsis

The remote host has a vulnerable version of LiteLLM installed.

Description

The version of the LiteLLM Python package installed on the remote host is prior to 1.84.0. It is, therefore, affected by a vulnerability:

- LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint. When LiteLLM key validation fails, the fallback OAuth2 passthrough path populates the session with an empty UserAPIKeyAuth() object instead of rejecting the request. An unauthenticated attacker can supply a fabricated Bearer token to trigger this fallback, establishing an authenticated MCP session and gaining access to MCP tools and connected services without valid credentials. (CVE-2026-59822)

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Upgrade to LiteLLM version 1.84.0 or later.

See Also

https://github.com/advisories/GHSA-7488-6r32-c95q

https://github.com/BerriAI/litellm/releases/tag/v1.84.0

https://www.wiz.io/blog/ai-infrastructure-honeypot

Plugin Details

Severity: High

ID: 364361

File Name: litellm_CVE-2026-59822.nasl

Version: 1.1

Type: Local

Agent: windows, macosx, unix

Published: 10/9/2026

Updated: 10/9/2026

Configuration: Enable thorough checks (optional)

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.5

Percentile: 98.25

CVSS v2

Risk Factor: High

Base Score: 8.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:P/A:N

CVSS Score Source: CVE-2026-59822

CVSS v3

Risk Factor: High

Base Score: 8.2

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

CVSS v4

Risk Factor: High

Base Score: 8.8

Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N

Vulnerability Information

CPE: cpe:/a:litellm:litellm

Patch Publication Date: 6/30/2026

Vulnerability Publication Date: 6/30/2026

CISA Known Exploited Vulnerability Due Dates: 9/16/2026

Reference Information

CVE: CVE-2026-59822