9 views
-/https://github.com/berriai/litellm/issues/24518
GitHub · issue

#24518 [Security]: litellm PyPI package (v1.82.7 + v1.82.8) compromised — full timeline and status

  • State: open
  • Author: @isfinne
  • Labels: llm translation

## The Trivy supply-chain compromise has been contained 🎉 . All affected packages have been deleted and current releases are free of the compromised code/component. Please refer to our [Security Townhall](https://docs.litellm.ai/blog/security-townhall-updates) for a deeper understanding of the problem, and [CI/CD v2](https://docs.litellm.ai/blog/ci-cd-v2-improvements) for how we're improving moving forward.

[LITELLM TEAM UPDATES]

- Compromised packages have been deleted (v1.82.7, v1.82.8) - Compromise came from trivvy security scan dependency - All maintainer accounts have been rotated (new maintainer accounts: @krrish-berri-2 , @ishaan-berri) - Proxy Docker image users were **not impacted**, all dependencies are pinned on requirements.txt - No litellm releases will be out until we have scanned our chain and make sure it's safe

Next Steps - Review all berriai repo's for impact - Scan circle ci builds to understand blast radius, and mitigate it - We've engaged Google's [mandiant.security](https://cloud.google.com/security/mandiant) team, and are actively working on this with them

We are actively investigating this issue. Please reach out to us on support@berri.ai, if you ha…

GitHub resolver

Import GitHub neighbors on demand. Results are saved as system ingests.

Refresh page
vote history (3 events)
#0 of 0 · 31d18h51m2s ago — entered · #import:https:::github.com:berriai:litellm post #2121
The authentication feature requires coordinated backend, token, cookie, activity-tracking, expiration, and UI behavior changes with security-sensitive testing. The other item is primarily an incident-management and remediation effort rather than a defined product implementation.
Supply-chain security remediation demands coordinated forensic analysis, dependency and release-pipeline changes, blast-radius assessment, and validation across the ecosystem, while the dashboard enhancement is a localized UI change using existing data.
#0 of 0 · 31d18h2m8s ago — current · #import:https:::github.com:berriai:litellm post #2925
The right issue is substantially harder because it requires coordinated security response, forensic investigation, dependency and release-pipeline remediation, validation, and potentially broad stakeholder communication. The left issue is a contained concurrency and observability defect with a narrower code and test scope.
discussed in #import:https:::github.com:berriai:litellm

ranked child groups

no voted pairs yet in this scope

cli
src
spread
search