{"id":"CVE-2026-12770","aliases":["GHSA-6qr3-3g89-m4jj"],"url":"https://o3.security/vulnerability/CVE-2026-12770","summary":"BerriAI litellm Admin Key key_management_endpoints.py improper authorization","details":"A vulnerability was determined in BerriAI litellm up to 1.63.1. The impacted element is an unknown function of the file litellm/proxy/management_endpoints/key_management_endpoints.py of the component Admin Key Handler. This manipulation causes improper authorization. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 23781. It is recommended to apply a patch to fix this issue. The vendor was contacted early about this disclosure.","published":"2026-06-21T00:15:08.657Z","modified":"2026-09-10T22:56:00.530868513Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"litellm","fixedVersion":null}],"fix":{"url":"https://github.com/BerriAI/litellm/pull/23781","label":"BerriAI/litellm#23781"},"references":[{"type":"WEB","url":"https://github.com/BerriAI/litellm/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/12xxx/CVE-2026-12770.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-12770"},{"type":"ADVISORY","url":"https://vuldb.com/cve/CVE-2026-12770"},{"type":"ADVISORY","url":"https://vuldb.com/submit/811279"},{"type":"ADVISORY","url":"https://vuldb.com/vuln/372512"},{"type":"REPORT","url":"https://vuldb.com/vuln/372512/cti"},{"type":"FIX","url":"https://github.com/BerriAI/litellm/pull/23781"},{"type":"EVIDENCE","url":"https://gist.github.com/YLChen-007/993c68152b2c770d53590f1684c755d4"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-09-10T22:56:00.530868513Z"}}