{
  "document": {
    "aggregate_severity": {
      "namespace": "https://access.redhat.com/security/updates/classification/",
      "text": "Critical"
    },
    "category": "csaf_vex",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright © Red Hat, Inc. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://access.redhat.com/security/team/contact/",
      "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.",
      "name": "Red Hat Product Security",
      "namespace": "https://www.redhat.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-42208.json"
      }
    ],
    "title": "LiteLLM: LiteLLM: Unauthorized data access and modification via SQL injection",
    "tracking": {
      "current_release_date": "2026-07-11T17:20:02+00:00",
      "generator": {
        "date": "2026-07-11T17:20:02+00:00",
        "engine": {
          "name": "Red Hat SDEngine",
          "version": "5.3.2"
        }
      },
      "id": "CVE-2026-42208",
      "initial_release_date": "2026-04-28T00:00:00+00:00",
      "revision_history": [
        {
          "date": "2026-04-28T00:00:00+00:00",
          "number": "1",
          "summary": "Initial version"
        },
        {
          "date": "2026-05-08T19:20:12+00:00",
          "number": "2",
          "summary": "Current version"
        },
        {
          "date": "2026-07-11T17:20:02+00:00",
          "number": "3",
          "summary": "Last generated version"
        }
      ],
      "status": "final",
      "version": "3"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Lightspeed Core",
                "product": {
                  "name": "Lightspeed Core",
                  "product_id": "lightspeed_core",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:lightspeed_core"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Lightspeed Core"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Ansible Automation Platform 2",
                "product": {
                  "name": "Red Hat Ansible Automation Platform 2",
                  "product_id": "red_hat_ansible_automation_platform_2",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:ansible_automation_platform:2"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Ansible Automation Platform 2"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat OpenShift AI (RHOAI)",
                "product": {
                  "name": "Red Hat OpenShift AI (RHOAI)",
                  "product_id": "red_hat_openshift_ai_(rhoai)",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:openshift_ai"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat OpenShift AI (RHOAI)"
          },
          {
            "category": "product_version",
            "name": "lightspeed-core/lightspeed-stack-rhel9",
            "product": {
              "name": "lightspeed-core/lightspeed-stack-rhel9",
              "product_id": "lightspeed-core/lightspeed-stack-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/lightspeed-stack-rhel9?repository_url=registry.redhat.io/lightspeed-core/lightspeed-stack-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "ansible-automation-platform-26/lightspeed-chatbot-rhel9",
            "product": {
              "name": "ansible-automation-platform-26/lightspeed-chatbot-rhel9",
              "product_id": "ansible-automation-platform-26/lightspeed-chatbot-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/lightspeed-chatbot-rhel9?repository_url=registry.redhat.io/ansible-automation-platform-26/lightspeed-chatbot-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "rhoai/odh-llama-stack-core-rhel9",
            "product": {
              "name": "rhoai/odh-llama-stack-core-rhel9",
              "product_id": "rhoai/odh-llama-stack-core-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/odh-llama-stack-core-rhel9?repository_url=registry.redhat.io/rhoai/odh-llama-stack-core-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "rhoai/odh-mlflow-rhel9",
            "product": {
              "name": "rhoai/odh-mlflow-rhel9",
              "product_id": "rhoai/odh-mlflow-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/odh-mlflow-rhel9?repository_url=registry.redhat.io/rhoai/odh-mlflow-rhel9"
              }
            }
          }
        ],
        "category": "vendor",
        "name": "Red Hat"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "lightspeed-core/lightspeed-stack-rhel9 as a component of Lightspeed Core",
          "product_id": "lightspeed_core:lightspeed-core/lightspeed-stack-rhel9"
        },
        "product_reference": "lightspeed-core/lightspeed-stack-rhel9",
        "relates_to_product_reference": "lightspeed_core"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ansible-automation-platform-26/lightspeed-chatbot-rhel9 as a component of Red Hat Ansible Automation Platform 2",
          "product_id": "red_hat_ansible_automation_platform_2:ansible-automation-platform-26/lightspeed-chatbot-rhel9"
        },
        "product_reference": "ansible-automation-platform-26/lightspeed-chatbot-rhel9",
        "relates_to_product_reference": "red_hat_ansible_automation_platform_2"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhoai/odh-llama-stack-core-rhel9 as a component of Red Hat OpenShift AI (RHOAI)",
          "product_id": "red_hat_openshift_ai_(rhoai):rhoai/odh-llama-stack-core-rhel9"
        },
        "product_reference": "rhoai/odh-llama-stack-core-rhel9",
        "relates_to_product_reference": "red_hat_openshift_ai_(rhoai)"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhoai/odh-mlflow-rhel9 as a component of Red Hat OpenShift AI (RHOAI)",
          "product_id": "red_hat_openshift_ai_(rhoai):rhoai/odh-mlflow-rhel9"
        },
        "product_reference": "rhoai/odh-mlflow-rhel9",
        "relates_to_product_reference": "red_hat_openshift_ai_(rhoai)"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-42208",
      "cwe": {
        "id": "CWE-89",
        "name": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')"
      },
      "discovery_date": "2026-04-29T22:15:41.713000+00:00",
      "flags": [
        {
          "label": "vulnerable_code_not_present",
          "product_ids": [
            "lightspeed_core:lightspeed-core/lightspeed-stack-rhel9",
            "red_hat_ansible_automation_platform_2:ansible-automation-platform-26/lightspeed-chatbot-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-llama-stack-core-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-mlflow-rhel9"
          ]
        }
      ],
      "ids": [
        {
          "system_name": "Red Hat Bugzilla ID",
          "text": "2463965"
        }
      ],
      "notes": [
        {
          "category": "description",
          "text": "A flaw was found in LiteLLM. A database query used for proxy API key checks incorrectly incorporated caller-supplied key values directly into the query. This vulnerability allows an unauthenticated attacker to send a specially crafted Authorization header to any Large Language Model (LLM) API route, exploiting the proxy's error-handling path. Successful exploitation could enable the attacker to read and potentially modify data within the proxy's database, leading to unauthorized access to the proxy and its managed credentials.",
          "title": "Vulnerability description"
        },
        {
          "category": "summary",
          "text": "LiteLLM: LiteLLM: Unauthorized data access and modification via SQL injection",
          "title": "Vulnerability summary"
        },
        {
          "category": "other",
          "text": "This Critical SQL injection vulnerability in LiteLLM's proxy API key verification allows unauthenticated attackers to read and modify database data, leading to unauthorized access and credential compromise. However, Red Hat products are not affected as the vulnerable versions are not in use.",
          "title": "Statement"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "known_not_affected": [
          "lightspeed_core:lightspeed-core/lightspeed-stack-rhel9",
          "red_hat_ansible_automation_platform_2:ansible-automation-platform-26/lightspeed-chatbot-rhel9",
          "red_hat_openshift_ai_(rhoai):rhoai/odh-llama-stack-core-rhel9",
          "red_hat_openshift_ai_(rhoai):rhoai/odh-mlflow-rhel9"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://access.redhat.com/security/cve/CVE-2026-42208"
        },
        {
          "category": "external",
          "summary": "RHBZ#2463965",
          "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2463965"
        },
        {
          "category": "external",
          "summary": "https://www.cve.org/CVERecord?id=CVE-2026-42208",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-42208"
        },
        {
          "category": "external",
          "summary": "https://nvd.nist.gov/vuln/detail/CVE-2026-42208",
          "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42208"
        },
        {
          "category": "external",
          "summary": "https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc",
          "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc"
        },
        {
          "category": "external",
          "summary": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
          "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog"
        }
      ],
      "release_date": "2026-04-28T00:00:00+00:00",
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 9.8,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "lightspeed_core:lightspeed-core/lightspeed-stack-rhel9",
            "red_hat_ansible_automation_platform_2:ansible-automation-platform-26/lightspeed-chatbot-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-llama-stack-core-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-mlflow-rhel9"
          ]
        }
      ],
      "threats": [
        {
          "category": "exploit_status",
          "date": "2026-05-08T00:00:00+00:00",
          "details": "CISA: https://www.cisa.gov/known-exploited-vulnerabilities-catalog"
        },
        {
          "category": "impact",
          "details": "Critical",
          "product_ids": [
            "lightspeed_core:lightspeed-core/lightspeed-stack-rhel9",
            "red_hat_ansible_automation_platform_2:ansible-automation-platform-26/lightspeed-chatbot-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-llama-stack-core-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-mlflow-rhel9"
          ]
        }
      ],
      "title": "LiteLLM: LiteLLM: Unauthorized data access and modification via SQL injection"
    }
  ]
}