High
Actively Exploited
cisa_kev
·
CVE-2026-59822
BerriAI LiteLLM Improper Authentication Vulnerability
Published Sep 2, 2026
CVSS 8.8
BerriAI LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint that could allow an unauthenticated attacker to establish an authenticated MCP session using an arbitrary Bearer token.
Affected AI Products
litellm