Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
outside2344
3mo ago
0 comments
Save
Share
Is it just in 1.82.8 or are previous versions impacted?
0 comments
3 comments · 1 top-level
top
newest
oldest
Imustaskforhelp
3mo ago
· 2 in thread
1.82.7 is also impacted if I remember correctly.
GrayShade
3mo ago
1.82.7 doesn't have litellm_init.pth in the archive. You can download them from pypi to check.
EDIT: no, it's compromised, see proxy/proxy_server.py.
cpburns2009
3mo ago
1.82.7 has the payload in `litellm/proxy/proxy_server.py` which executes on import.
j
/
k
navigate · click thread line to collapse