セキュリティ対策Lab[verified]@securityLab_jpActive Exploitation
The article confirms that CVE-2026-35029 in LiteLLM is being actively exploited in cyber attacks, but provides no further technical details or mitigation information.
セキュリティ対策Lab[verified]@securityLab_jpPatch
LiteLLM has addressed two critical CVEs (CVE‑2026‑35030 and CVE‑2026‑35029) involving authentication bypass and remote code execution, as noted in the linked article, indicating that patches have been deployed.
TheDarkForge[verified]@DarkForgeNewsPatch
LiteLLM announces a privilege‑escalation vulnerability (CVE‑2026‑35029) in its /config/update endpoint and releases a patch in v1.83.0, but provides no evidence of exploitation or PoC.
zenitylabs@zenitysec_labsActive Exploitation
Attackers have been probing LiteLLM’s /config/update route following the publication of CVE-2026-35029, with a read‑only account proving sufficient to gain full control of the gateway.
ET Labs@ET_LabsGeneral
The post is a ruleset update from Emerging Threats, listing new CVEs including CVE-2026-35029, but does not provide any further technical, exploit, or patch information.
Daily CyberSecurity@Daily_CyberSecActive Exploitation
The post reports that CVE-2026-35029 is actively exploited, enabling LiteLLM server takeover and exposure of secrets, with no mention of a patch or detailed exploit code.
pdnuclei-bot@pdnuclei_botDisclosure
The tweet announces CVE‑2026‑35029 for LiteLLM <1.83.0, describing an access‑control flaw that allows arbitrary file reads, and provides a link to further details without mentioning exploits or patches.
SEC Consult@sec_consultPatch
The advisory highlights a broken access control flaw in LiteLLM’s config endpoint that allows low‑privileged users to access sensitive host data, and it confirms a patch is available and should be applied immediately.