Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
ECHO-979c-ccdf-dda8
See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-979c-ccdf-dda8.json
JSON Data
https://api.osv.dev/v1/vulns/ECHO-979c-ccdf-dda8
Upstream
CVE-2026-42208
GHSA-r75f-5x8p-qvmc
Withdrawn
2026-06-28T14:21:35Z
Published
2026-05-17T15:00:06Z
Modified
2026-09-15T03:33:35Z
Summary
Resolved by package bump to 1.90.0+e1 (fixed version: 1.83.7)
Details
References
https://advisory.echohq.com/cve/GHSA-r75f-5x8p-qvmc
https://github.com/advisories/GHSA-r75f-5x8p-qvmc
Affected packages
Echo:PyPI
/
litellm
Package
Name
litellm
Purl
pkg:pypi/litellm
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.83.7
Database specific
source
"https://advisory.echohq.com/osv/ECHO-979c-ccdf-dda8.json"
ECHO-979c-ccdf-dda8 - OSV