SOURCE-LINKED INTELLIGENCE
GHSA-4g5m-c9r5-49xf: LiteLLM: Local file read via request-supplied OIDC file references
### Impact LiteLLM's `/health/test_connection` endpoint resolved request-supplied environment and OIDC file references in `litellm_params`. A proxy administrator, or another privileged caller with permission to test model connections, could cause LiteLLM to read files from the local filesystem via an `oidc/file/` reference. Because exploitation requires privileged proxy access, this is treated as a defense-in-depth issue rather than a cross-tenant privilege bypass. ### Patches The issue is fixed in `1.83.10-stable`. LiteLLM recommend upgrading to `1.83.10-stable` or later. ### Workarounds Rest
Read original source ↗ Open in workspace
- recordType
- vulnerability
- status
- active
- evidenceStatus
- reported
- region
- Global
Evidence & attribution
- OSV AI package advisories · 2026-07-22T22:38:04.000Z
- OSV AI package advisories · 2026-07-23T11:41:48.509Z
First collected: 2026-09-20T23:41:51.992Z. This is not the publication date.