安全攻防
morning
LiteLLM 漏洞 CVE-2026-42271 被广泛利用,导致未经身份验证的 RCE
摘要
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of
The
vulnerability
Cybersecurity
and
Infrastructure
2026-06-09
1 阅读
约1分钟阅读
info@thehackernews.com (The Hacker News)
字号:
美国网络安全和基础设施安全局 (CISA) 周一将影响 BerriAI LiteLLM 的高严重性缺陷添加到其已知被利用的漏洞 (KEV) 目录中,并引用了积极利用的证据。该漏洞编号为 CVE-2026-42271(CVSS 评分:8.7),是一个命令注入漏洞,可能允许任何经过身份验证的用户在
这篇文章对您有帮助吗?
订阅66必读
每日精选科技资讯,直达你的邮箱