{"id":"CVE-2026-93355","title":"LiteLLM contains a weak authentication vulnerability that allows an attacker holding a valid JWT from the configured identity provider to authenticate as any existing user by exploiting an email-based fallback lookup in the JWT authentic…","summary":"LiteLLM contains a weak authentication vulnerability that allows an attacker holding a valid JWT from the configured identity provider to authenticate as any existing user by exploiting an email-based fallback lookup in the JWT authentic…","severity":"high","cvss":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","cwe":["CWE-1390"],"vendor":"BerriAI","product":"litellm","affected":["litellm <= 1.102.1","litellm <= f4308bc124eebc783dfc51790ce8db27ed21ae00"],"published":"2026-09-28","updated":"2026-09-28","sourceUpdated":"2026-09-28T20:17:11.547","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-93355","references":[{"url":"https://www.ox.security/blog/litellm-an-ordinary-login-token-can-become-someone-elses-admin-account/","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/litellm-weak-jwt-authentication-via-email-based-user-lookup","label":"disclosure@vulncheck.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-28T20:20:05.661Z","slug":"CVE-2026-93355","body":"## Overview\n\nLiteLLM contains a weak authentication vulnerability that allows an attacker holding a valid JWT from the configured identity provider to authenticate as any existing user by exploiting an email-based fallback lookup in the JWT authentication flow without verifying the email_verified claim. Attackers can present a token with an unverified email address matching a victim's account to inherit the victim's role, including proxy_admin privileges, and permanently overwrite the victim's stored identity binding to retain persistent unauthorized access to administrative endpoints exposing API keys and user management.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":45,"depthScoreParts":{"impact":44.6,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}