chiprook
← Security
SecuritySeptember 19, 2026, 05:20

The AI Gateway Becomes a Target: Measuring LiteLLM and Kestra Exposure

On September 2, 2026, CISA added vulnerabilities in AI gateway LiteLLM (CVE-2026-59822, CVSS 8.8) and orchestration platform Kestra (CVE-2026-49869, CVSS 10.0) to the Known Exploited Vulnerabilities catalog. 34,412 LiteLLM and 126 Kestra installations are exposed online, risking theft of API keys to LLMs.

The AI Gateway Becomes a Target: Measuring LiteLLM and Kestra Exposure
#LiteLLM#Kestra#CISA
Read next
Security

Kaspersky uncovers malware campaign spread via movie torrents

Security

Z.ai silently uploaded devs' local data: 313MB and 564 upload attempts

Security

Samsung and LG to remove botnet apps from smart TV stores

Security

CrowdSec confirms source code stolen in supply chain attack