CVE-2026-40217
Description
LiteLLM through 2026-04-08 allows remote attackers to execute arbitrary code via bytecode rewriting at the /guardrails/test_custom_code URI.

BerriAI/litellm
GitHubThe fastest, litest AI Gateway. Rust core with Python SDK. Call 100+ LLM APIs in OpenAI (or native) format with cost tracking, guardrails, load balancing, and logging [Bedrock, Azure, OpenAI, Anthropic, OpenAI, VertexAI, vLLM, Nvidia NIM] <= 2026-04-08, >= 1.81.8, < 1.83.10NVD

litellm
Python Package IndexLibrary to easily interface with LLM API providers <= 2026-04-08, >= 1.81.8, < 1.83.10OSV