# Kong Security Update: Kong Is Not Affected by the PyPi-Distributed LiteLLM Supply Chain Attack

Kong does not rely on LiteLLM — whether PyPI-distributed or otherwise — for any components in our runtime stack. As you may know, a supply chain vulnerability affecting LiteLLM versions 1.82.7 and 1.82.8, a popular open-source AI proxy library, was publicized yesterday. The malicious package,…
[](/blog/news/kong-not-affected-by-the-pypi-distributed-litellm-supply-chain-attack)










