Infrastructure
Test Endpoints, Unauthenticated RCE: How a LiteLLM Preview Feature Became a CVSS 10.0 Attack Vector
A command injection flaw in LiteLLM's MCP test endpoints, chained with a Starlette authentication bypass, reveals how developer convenience features are becoming the weakest link in agent infrastructure security.
◆ Blair Hayes