Insufficient Session Expiration in BerriAI Litellm Affects SSO Authentication Flow
CVE-2026-12796
Key Information:
Badges
What is CVE-2026-12796?
A security vulnerability in BerriAI's Litellm, specifically within the SSO Authentication Flow managed by the get_redirect_response_from_openid function in the file litellm/proxy/management_endpoints/ui_sso.py, has been identified. This flaw allows for session expiration manipulation, posing a risk of unauthorized access through remote exploitation. The vulnerability affects all versions of Litellm up to 1.82.2 and has publicly available exploits. The vendor was informed of this issue prior to its disclosure, emphasizing the importance of prompt updates and mitigations.
Affected Version(s)
litellm 1.82.0
litellm 1.82.1
litellm 1.82.2
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
