CVE-2024-10188: BerriAI Berriai/litellm

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability in BerriAI/litellm, as of commit 26c03c9, allows unauthenticated users to cause a Denial of Service (DoS) by exploiting the use of ast.literal_eval to parse user input. This function is not safe and is prone to DoS attacks, which can crash the litellm Python server.

Affected products

  • BerriAI Berriai/litellm: before 1.53.1 (fixed in 1.53.1)

Published 2025-03-20. Last modified 2026-06-17.