Skip to content

Hide Navigation Hide TOC

LiteLLM User-Role Privilege Escalation (CVE-2026-47102) - ATR-2026-01933 (b35726cc-da0f-5777-a5c8-1bbf41558c24)

Detects CVE-2026-47102 (CVSS 9.9 chain, CWE-269): LiteLLM's user-management endpoints /user/update and /user/bulk_update modify security-sensitive fields without field-level authorization. A low-privilege authenticated caller (e.g. internal_user) can write the user_role field directly and self-promote to proxy_admin, gaining full administrative control of the LiteLLM proxy. Affected: LiteLLM before 1.83.10. Detection covers: (a) /user/update or /user/bulk_update payload that sets user_role to an administrative role (proxy_admin / admin); (b) the bulk_update array form where a user object escalates user_role; (c) explicit CVE-2026-47102 exploitation framing. The detection target is the request shape — an admin-role write at the user-update endpoint — which is the exact privilege-escalation primitive, caught before the proxy applies the role change.

Cluster A Galaxy A Cluster B Galaxy B Level
Valid Accounts - T1078 (b17a1a56-e99c-403c-8948-561df0cffe81) Attack Pattern LiteLLM User-Role Privilege Escalation (CVE-2026-47102) - ATR-2026-01933 (b35726cc-da0f-5777-a5c8-1bbf41558c24) Agent Threat Rules 1
Exploitation for Privilege Escalation - T1068 (b21c3b2d-02e6-45b1-980b-e69051040839) Attack Pattern LiteLLM User-Role Privilege Escalation (CVE-2026-47102) - ATR-2026-01933 (b35726cc-da0f-5777-a5c8-1bbf41558c24) Agent Threat Rules 1
Exploit Public-Facing Application (47d73872-5336-44f7-81e3-d30bc7e039dd) MITRE ATLAS Attack Pattern LiteLLM User-Role Privilege Escalation (CVE-2026-47102) - ATR-2026-01933 (b35726cc-da0f-5777-a5c8-1bbf41558c24) Agent Threat Rules 1