diff --git a/http/cves/2024/CVE-2024-6587.yaml b/http/cves/2024/CVE-2024-6587.yaml index 6732aa8492..35e2b4a898 100644 --- a/http/cves/2024/CVE-2024-6587.yaml +++ b/http/cves/2024/CVE-2024-6587.yaml @@ -1,11 +1,14 @@ id: CVE-2024-6587 info: - name: LiteLLM Blind - SSRF Exposes OpenAI API Keys + name: LiteLLM - Server-Side Request Forgery author: pdresearch,iamnoooob,rootxharsh,lambdasawa severity: high + description: | + LiteLLM vulnerable to Server-Side Request Forgery (SSRF) vulnerability Exposes OpenAI API Keys. reference: - https://huntr.com/bounties/4001e1a2-7b7a-4776-a3ae-e6692ec3d997 + - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-6587 metadata: verified: true max-request: 1