A vulnerability in BerriAI/litellm, as of commit 26c03c9, allows unauthenticated users to cause a Denial of Service (DoS) by exploiting the use of ast.literal_eval to parse user input. This function is not safe and is prone to DoS attacks, which can crash the litellm Python server.
{
"nvd_published_at": "2025-03-20T10:15:14Z",
"severity": "HIGH",
"github_reviewed": true,
"cwe_ids": [
"CWE-400"
],
"github_reviewed_at": "2025-03-20T18:54:47Z"
}