mirror of
https://github.com/BerriAI/litellm.git
synced 2026-08-28 05:25:59 +00:00
Temporarily allowlist Next.js vulnerabilities in UI dashboard: - GHSA-h25m-26qc-wcjf (HIGH: DoS via request deserialization) - CVE-2025-59471 (MEDIUM: Image Optimizer DoS) Fix: Upgrade to Next.js 15.5.10+ or 16.1.5+ (7-day timeline) Changes: - Added .trivyignore with Next.js CVEs - Updated security_scans.sh to use --ignorefile flag |
||
|---|---|---|
| .. | ||
| .grype.yaml | ||
| baseline_db.py | ||
| check_file_length.py | ||
| check_files_match.py | ||
| publish-proxy-extras.sh | ||
| run_migration.py | ||
| security_scans.sh | ||
| security_scans_readme.md | ||
| TEST_KEY_PATTERNS.md | ||