/Vulnerability Library

LiteLLM 1.18.10 - Command Injection

CVE-2026-30623
Verified

Description

LiteLLM 1.18.10 contains a remote code execution caused by lack of validation of arbitrary command and args in MCP server creation, letting attackers execute OS commands remotely, exploit requires crafted JSON configuration.

Severity

High

Exploit Probability

5%

Published Date

July 16, 2026

Template Author

leeseungsu

CVE-2026-30623.yaml
7.5Severity

CVSS Metrics

CVE ID:
cve-2026-30623
CWE ID:
cwe-77

References

https://docs.litellm.ai/blog/mcp-stdio-command-injection-april-2026https://cveawg.mitre.org/api/cve/CVE-2026-30623https://github.com/BerriAI/litellm

Remediation Steps

Update to the latest version of LiteLLM with validation for MCP server commands.