CVE-2026-35029 is a high-severity vulnerability in LiteLLM, an AI Gateway proxy server that calls LLM APIs. Prior to version 1.83.0, the configuration update endpoint does not enforce admin role authorization, allowing an authenticated user to modify proxy settings and environment variables. This enables malicious activities such as registering custom pass-through handlers for remote code execution, reading arbitrary server files by manipulating logo paths and fetching images, and taking over privileged accounts by altering username and password environment variables. The vulnerability has a CVSS score of 8.8 (HIGH) and is related to CWE-863 and CWE-425. It was fixed in version 1.83.0.
We recommend you to update LiteLLM to version 1.83.0.[/subscribe_to_unlock_form]
CVE-2026-35029 is a high-severity vulnerability in LiteLLM, an AI Gateway proxy server that calls LLM APIs. Prior to version 1.83.0, the configuration update endpoint does not enforce admin role authorization, allowing an authenticated user to modify proxy settings and environment variables. This enables malicious activities such as registering custom pass-through handlers for remote code execution, reading arbitrary server files by manipulating logo paths and fetching images, and taking over privileged accounts by altering username and password environment variables. The vulnerability has a CVSS score of 8.8 (HIGH) and is related to CWE-863 and CWE-425. It was fixed in version 1.83.0.
We recommend you to update LiteLLM to version 1.83.0.[emaillocker id="1283"]
The following reports contain further technical details:
[/emaillocker]