Nearly One in 10 Exposed LiteLLM Gateways Took the Example Admin Key From Its Own Docs
Wiz Research found 294 of 3,074 internet-facing LiteLLM gateways accepted sk-1234, the example master key in LiteLLM's setup guide, in a February scan. A related authentication bypass, CVE-2026-59822, has been exploited since July and joined CISA's KEV catalog on September 2.