LiteLLM v1.103.1 (PyPI ~2026-09-29T23:36Z; 5 commits ahead of 1.103.0) backports binding UI/CLI session tokens to their own AES-GCM encryption context (a80eaca), with e2e/OIDC and auth unit tests—security hardening for operators pinned on the 1.103.x stable line.

Key Takeaways

🧭

Finished reading? Explore benchmark rankings & pricing

Real-world SWE-bench scores & $20/mo vs API cost break-even calculator

🔬

In-Depth Technical Analysis

Background

Proxy UI/CLI session tokens need isolated AES-GCM contexts. Operators pinned on 1.103.x need a stable-line security backport rather than jumping to RC/dev.

What shipped

v1.103.1: bind UI/CLI session tokens to their own AES-GCM context (a80eaca) with e2e/OIDC tests. 5 commits ahead of 1.103.0.

Benchmarks

No latency benchmarks—auth hardening only. Anchors: ahead_by 5; PyPI 1.103.1.

Get started

pip install 'litellm==1.103.1'. Docs: https://docs.litellm.ai/docs/