GITHUBEXPLOIT 8.8 HIGH

Exploit for CVE-2026-47102_16141140-4972-503C-85D5-308A4B232C22

8.8 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

CVE-2026-47102 — LiteLLM Privilege Escalation via /user/update LiteLLM v1.83.7(v1.83.10 之前版本)的 /user/update 端点允许拥有该端点访问权限的 低权限用户在更新自己的账户时将 userrole 字段修改为 proxyadmin, 实现未授权的权限提升。 | Field | Value | |-------|-------| | CVE | CVE-2026-47102 | | CVSS v3.1 |...
Visit Original Source

Basic Information

ID 16141140-4972-503C-85D5-308A4B232C22
Published May 25, 2026 at 13:37
Modified May 25, 2026 at 13:38

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.