Critical LiteLLM Flaw Can Allow Authentication Bypass Through Host Header Injection
A critical vulnerability in LiteLLM can allow unauthenticated access to protected management routes in some proxy server deployments. The flaw is tracked as CVE-2026-49468 and…