LiteLLM CVE-2026-42208: Pre-Auth SQL Injection in AI Gateway Exploited Within 36 Hours — CVSS 9.3, Upstream Provider Keys at Risk
The Hacker News·high signal
A critical pre-authentication SQL injection in LiteLLM (22K+ GitHub stars), the open-source LLM proxy used as a gateway to OpenAI/Anthropic/AWS, was exploited in the wild within 36 hours of disclosure. The attacker targeted litellm_credentials tables containing upstream provider API keys with five-figure monthly spend caps. A single compromised row often holds OpenAI org keys, Anthropic workspace admin credentials, and AWS Bedrock IAM tokens — making this closer to cloud-account compromise than typical SQLi.