Miggo Logo

CVE-2024-5225: SQL injection in litellm

6.4

CVSS Score
3.0

Basic Information

EPSS Score
0.27159%
Published
6/6/2024
Updated
6/6/2024
KEV Status
No
Technology
TechnologyPython

Technical Details

CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
litellmpip< 1.40.01.40.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

*n SQL Inj**tion vuln*r**ility *xists in t** **rri*i/lit*llm r*pository, sp**i*i**lly wit*in t** `/*lo**l/sp*n*/lo*s` *n*point. T** vuln*r**ility *ris*s *u* to improp*r n*utr*liz*tion o* sp**i*l *l*m*nts us** in *n SQL *omm*n*. T** *****t** *o** *ons

Reasoning

No *n*lysis *v*il**l*