CVE-2026-42271: How a Popular AI Gateway Became an RCE Vector β And What to Audit in Your Stack
On May 8, 2026, BerriAI disclosed CVE-2026-42271, a command-injection flaw in LiteLLM, one of the most widely deployed open-source AI gateways. The vulnerability scored CVSS 8.8 and affects releases fβ¦