CVE-2025-0628 - Improper Authorization in BerriAI/litellm Lets Regular Users Become Proxy Admins
Published: June 2024
CVSS Score: 8.8 (High)
Summary:
A new high-impact vulnerability—CVE-2025-0628—has been found in the main-latest version
CVE-2024-8020: Vulnerability in lightning-ai/pytorch-lightning 2.3.2 Denial of Service Attack through Unexpected POST Requests
A critical vulnerability (CVE-2024-8020) has been discovered in the lightning-ai/pytorch-lightning version 2.3.2. This vulnerability allows an attacker to
CVE-2024-6827 - Gunicorn 21.2. TE.CL Request Smuggling Vulnerability Explained
If you’re running Gunicorn version 21.2. or below, it’s time to pay attention. A new vulnerability, CVE-2024-6827, has surfaced, affecting
CVE-2024-6842 - Sensitive API Keys Leak in mintplex-labs/anything-llm v1.5.5 Through `/setup-complete` Endpoint
CVE-2024-6842 is a critical vulnerability that impacts version 1.5.5 of the open-source project mintplex-labs/anything-llm. The flaw lies
CVE-2024-4990: A Deep Dive Into the Vulnerability in yiisoft/yii2 v2..48
This post presents an in-depth analysis of the vulnerability found in the yiisoft/yii2 version 2..48. This vulnerability, identified as CVE-2024-4990,
Episode
00:00:00
00:00:00