ai proxy security

  1. CISA Adds LiteLLM SQL Injection CVE-2026-42208 to KEV—AI Proxies Are High-Value

    CISA on May 8, 2026, added CVE-2026-42208, a critical SQL injection flaw in BerriAI’s LiteLLM AI proxy, to its Known Exploited Vulnerabilities Catalog after evidence showed attackers were actively exploiting the bug against systems that broker access to large language model services. The entry...