Hacker News
new
past
comments
ask
show
jobs
points
by
Imustaskforhelp
1 days ago
|
comments
by
GrayShade
1 days ago
|
[-]
1.82.7 doesn't have litellm_init.pth in the archive. You can download them from pypi to check.
EDIT: no, it's compromised, see proxy/proxy_server.py.
reply
by
cpburns2009
1 days ago
|
parent
|
[-]
1.82.7 has the payload in `litellm/proxy/proxy_server.py` which executes on import.
reply