pypi:litellmThis dossier links the stable identity pypi:litellm to 4 exact observed versions across 4 public repositories.
A package identity or provider interface in published code does not prove configuration, an account, procurement, data transfer or an API call.
ecosystem:name + exact version + evidence pathPublication age and licenses come from deps.dev metadata. They are context—not a maintenance, legal or portability verdict.
05 Dec 202427 Apr 202504 May 202504 Jul 2025baden-wuerttemberg/innenministerium/kiva.platform/kiva-llm-gateway1 Occurrenceuba-ki-lab/gsa-extraction1 Occurrenceuba-ki-lab/llm-testframework1 Occurrenceuba-ki-lab/objection-management1 Occurrenceuba-ki-lab/gsa-extractionuv.lockbaden-wuerttemberg/innenministerium/kiva.platform/kiva-llm-gatewaydocker/build_from_pip/requirements.txtuba-ki-lab/llm-testframeworkuv.lockuba-ki-lab/objection-managementuv.lockLiteLLM: Local file read via request-supplied OIDC file references
23 Jul 2026LiteLLM: Authentication Bypass via Host Header Injection
18 Jul 2026LiteLLM: Privilege escalation via unrestricted proxy configuration endpoint
13 Jul 2026LiteLLM: Arbitrary file write via path traversal in Skills archive extraction
23 Jul 2026LiteLLM: Password hash exposure and pass-the-hash authentication bypass
17 Apr 2026LiteLLM: Custom Code Guardrails production endpoints bypass code safety checks
23 Jul 2026LiteLLM: MCP Authentication Bypass via OAuth2 Passthrough Fallback
23 Jul 2026LiteLLM Vulnerable to Denial of Service (DoS) via Crafted HTTP Request
07 Jul 2026LiteLLM Has an Improper Authorization Vulnerability
07 Jul 2026LiteLLM: Authentication bypass via OIDC userinfo cache key collision
01 Jul 2026LiteLLM allows an authenticated internal_user to create API keys with access to routes that their role does not permit
13 Jul 2026LiteLLM allows a user to modify their own user_role via the /user/update endpoint
13 Jul 2026Only exact npm and PyPI tuples are enriched. Reported SPDX expressions are metadata; no compatibility, obligation or legal conclusion is inferred.
Retrieval, parsing, matching and publishing use no generative AI model.i6eal (2026): LiteLLM — exact AI dependency evidence dossier, data state 13 Aug 2026. https://i6eal.de/en/tools/ki-abhaengigkeitsatlas/paket/litellm-e00b5c8b/
We build source-backed data products with stable identities, reproducible joins and boundaries that remain visible.
These tools complement the current result.