SQL Injection in LiteLLM Proxy Exposes LLM Provider Keys Within 36 Hours
A critical SQL injection vulnerability (CVE-2026-42208, CVSS 9.3) in BerriAI's LiteLLM AI gateway was actively exploited within 36 hours of public disclosure, targeting database tables storing …
AML.T0012 - Valid Accounts
AML.T0040 - ML Model Inference API Access
AML.T0047 - ML-Enabled Product or Service