BerriAI vendor intelligence

BerriAI Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting BerriAI products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
4
Known exploited vulnerabilities affecting BerriAI products
In CISA KEV
3
Records also listed in the official catalog
Beyond CISA KEV
1
Additional exploited CVEs absent from CISA KEV
Sensor Observed
0
BerriAI KEVs with sensor-observed exploitation activity

The catalog gap matters for BerriAI exposure

One of the four exploited BerriAI CVEs tracked here are not in CISA KEV. Teams relying on the official catalog alone would miss one-quarter of this vendor portfolio.

75%
Covered by CISA
25%
Beyond CISA
3
Product families

Attested BerriAI CVEs

Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2026-42271

LiteLLM: Authenticated command execution via MCP stdio test endpoints

litellm Confirmed In CISA 08 Jun 2026
CVE-2026-42208

LiteLLM: SQL injection in Proxy API key verification

litellm Confirmed In CISA 01 Jun 2026
CVE-2026-33634

Trivy ecosystem supply chain briefly compromised

setup-trivy, trivy-action, trivy, LiteLLM, telnyx Confirmed In CISA 01 Jun 2026
CVE-2024-6587

SSRF in berriai/litellm

berriai/litellm High Beyond CISA 13 Sep 2024

Showing 4 of 4 BerriAI known exploited vulnerabilities.

Recurring weakness patterns

Embedded malicious code, neutralization, and neutralization account for three mapped occurrences across this BerriAI KEV portfolio.

Browse all KEVs →

Early warning alerts

Get alerts on high-impact exploitation

Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.

Occasional high-impact alerts. Unsubscribe anytime. See our Privacy Policy.