CVE-2026-12796

A vulnerability was identified in BerriAI litellm up to 1.82.2. This impacts the function get_redirect_response_from_openid of the file litellm/proxy/management_endpoints/ui_sso.py of the component SSO Authentication Flow. The manipulation leads to session expiration. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure.
References
Link Resource
https://gist.github.com/YLChen-007/5fa8af12e1b183674d7ca96d852fb697 Exploit Third Party Advisory
https://vuldb.com/cve/CVE-2026-12796 Third Party Advisory VDB Entry
https://vuldb.com/submit/811287 Third Party Advisory Exploit VDB Entry
https://vuldb.com/vuln/372558 Third Party Advisory VDB Entry
https://vuldb.com/vuln/372558/cti Permissions Required VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:litellm:litellm:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-21 10:16

Updated : 2026-06-24 20:13


NVD link : CVE-2026-12796

Mitre link : CVE-2026-12796

CVE.ORG link : CVE-2026-12796


JSON object : View

Products Affected

litellm

  • litellm
CWE
CWE-613

Insufficient Session Expiration