LibreChat records
52 published records for vendor librechat.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 50%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-284 Improper Access Control6
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')4
- CWE-918 Server-Side Request Forgery (SSRF)4
- CWE-862 Missing Authorization4
- CWE-248 Uncaught Exception3
- CWE-285 Improper Authorization3
The weakness classes this vendor ships most often: where to look.
CWEAll records
52 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2026-22252No exploit | LibreChat MCP Stdio Remote Command Executionlibrechat · librechat · CWE-285 | Critical9.9 | — | 4.1% | Jan 12, 2026 |
39Monitor | CVE-2024-41704No exploit | LibreChat through 0.7.4-rc1 does not validate the normalized pathnames of images.librechat · librechat · CWE-22 | Critical9.8 | — | 0.7% | Jul 22, 2024 |
39Monitor | CVE-2024-41703No exploit | LibreChat through 0.7.4-rc1 has incorrect access control for message updates.librechat · librechat · CWE-284 | Critical9.8 | — | 0.4% | Jul 22, 2024 |
38Monitor | CVE-2026-32625No exploit | LibreChat Exfiltrates Server Secrets via MCP Server URL Injectionlibrechat · librechat · CWE-200 | Critical9.6 | — | 0.4% | Jun 2, 2026 |
37Monitor | CVE-2026-54030No exploit | LibreChat: Missing Resource Parameter Validation in MCP OAuth Flowlibrechat · librechat · CWE-346 | Critical9.3 | — | 0.2% | Jun 25, 2026 |
36Monitor | CVE-2024-11170No exploit | Path Traversal in danny-avila/librechatlibrechat · librechat · CWE-29 | High8.8 | — | 1.8% | Mar 20, 2025 |
36Monitor | CVE-2024-10361No exploit | Arbitrary File Deletion via Path Traversal in danny-avila/librechatlibrechat · librechat · CWE-22 | Critical9.1 | — | 1.0% | Mar 20, 2025 |
36Monitor | CVE-2024-52787No exploit | An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying a crafted filename iCWE-22 | Critical9.1 | — | 0.8% | Nov 25, 2024 |
36Monitor | CVE-2026-33265No exploit | In LibreChat 0.8.1-rc2, a logged-in user obtains a JWT for both the LibreChat API and the RAG API.librechat · librechat · CWE-669 | Critical9.0 | — | 0.3% | Mar 18, 2026 |
35Monitor | CVE-2025-8850No exploit | Insecure API Design in danny-avila/librechatlibrechat · librechat · CWE-440 | High8.8 | — | 0.4% | Oct 30, 2025 |
34Monitor | CVE-2026-31943No exploit | LibreChat has SSRF protection bypass via IPv4-mapped IPv6 normalization in isPrivateIPlibrechat · librechat · CWE-918 | High8.5 | — | 0.3% | Mar 27, 2026 |
34Monitor | CVE-2025-66201No exploit | LibreChat is Vulnerable to Server-Side Request Forgery (SSRF) in Actions Capabilitylibrechat · librechat · CWE-20 | High8.6 | — | 0.3% | Nov 28, 2025 |
34Monitor | CVE-2025-66450No exploit | LibreChat JSON Injection in Chat POST Allows Remote Resource Inclusion and PXSS via Image Uploadlibrechat · librechat · CWE-80 | High8.6 | — | 0.2% | Dec 11, 2025 |
33Monitor | CVE-2025-69222No exploit | LibreChat is vulnerable to Server-Side Request Forgery due to missing restrictionslibrechat · librechat · CWE-918 | High8.1 | — | 4.7% | Jan 7, 2026 |
32Monitor | CVE-2026-54036No exploit | LibreChat: 2FA Re-enrollment Allows Full Account 2FA Takeover Without OTP Verificationlibrechat · librechat · CWE-306 | High8.1 | — | 0.4% | Jun 25, 2026 |
32Monitor | CVE-2025-41258No exploit | LibreChat RAG API Authentication Bypasslibrechat · librechat · CWE-284 | High8.0 | — | 0.3% | Mar 18, 2026 |
30Monitor | CVE-2024-11169No exploit | Unhandled Exception Leading to Server Crash in danny-avila/librechatlibrechat · librechat · CWE-115 | High7.5 | — | 0.9% | Mar 20, 2025 |
30Monitor | CVE-2024-11172No exploit | Denial of Service in danny-avila/librechatlibrechat · librechat · CWE-248 | High7.5 | — | 0.9% | Mar 20, 2025 |
30Monitor | CVE-2024-11171No exploit | Improper Input Validation in danny-avila/librechatlibrechat · librechat · CWE-770 | High7.5 | — | 0.5% | Mar 20, 2025 |
30Monitor | CVE-2026-4276No exploit | LibreChat RAG API, version 0.7.0, contains a log-injection vulnerability that allows attackers to forge log entries.librechat · librechat · CWE-94 | High7.5 | — | 0.5% | Mar 16, 2026 |
30Monitor | CVE-2025-54868No exploit | LibreChat exposes arbitrary chats through Meilisearch enginelibrechat · librechat · CWE-285 | High7.5 | — | 0.4% | Aug 5, 2025 |
30Monitor | CVE-2026-31945No exploit | LibreChat Server-Side Request Forgery using DNS resolutionlibrechat · librechat · CWE-918 | High7.7 | — | 0.4% | Mar 27, 2026 |
30Monitor | CVE-2025-8849No exploit | Denial of Service in danny-avila/librechatlibrechat · librechat · CWE-400 | High7.5 | — | 0.3% | Oct 30, 2025 |
30Monitor | CVE-2025-7104No exploit | Mass Assignment in danny-avila/librechatlibrechat · librechat · CWE-915 | High7.5 | — | 0.3% | Sep 29, 2025 |
30Monitor | CVE-2026-31944No exploit | LibreChat MCP OAuth callback does not validate browser session — allows token theft via redirect linklibrechat · librechat · CWE-306 | High7.6 | — | 0.3% | Mar 13, 2026 |
- CVE-2026-2225240Plan
LibreChat MCP Stdio Remote Command Execution
CriticalCVSS 9.9No exploitEPSS 4%librechat · librechatJan 12, 2026
- CVE-2024-4170439Monitor
LibreChat through 0.7.4-rc1 does not validate the normalized pathnames of images.
CriticalCVSS 9.8No exploitEPSS 1%librechat · librechatJul 22, 2024
- CVE-2024-4170339Monitor
LibreChat through 0.7.4-rc1 has incorrect access control for message updates.
CriticalCVSS 9.8No exploitEPSS 0%librechat · librechatJul 22, 2024
- CVE-2026-3262538Monitor
LibreChat Exfiltrates Server Secrets via MCP Server URL Injection
CriticalCVSS 9.6No exploitEPSS 0%librechat · librechatJun 2, 2026
- CVE-2026-5403037Monitor
LibreChat: Missing Resource Parameter Validation in MCP OAuth Flow
CriticalCVSS 9.3No exploitEPSS 0%librechat · librechatJun 25, 2026
- CVE-2024-1117036Monitor
Path Traversal in danny-avila/librechat
HighCVSS 8.8No exploitEPSS 2%librechat · librechatMar 20, 2025
- CVE-2024-1036136Monitor
Arbitrary File Deletion via Path Traversal in danny-avila/librechat
CriticalCVSS 9.1No exploitEPSS 1%librechat · librechatMar 20, 2025
- CVE-2024-5278736Monitor
An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying a crafted filename i
CriticalCVSS 9.1No exploitEPSS 1%Nov 25, 2024
- CVE-2026-3326536Monitor
In LibreChat 0.8.1-rc2, a logged-in user obtains a JWT for both the LibreChat API and the RAG API.
CriticalCVSS 9.0No exploitEPSS 0%librechat · librechatMar 18, 2026
- CVE-2025-885035Monitor
Insecure API Design in danny-avila/librechat
HighCVSS 8.8No exploitEPSS 0%librechat · librechatOct 30, 2025
- CVE-2026-3194334Monitor
LibreChat has SSRF protection bypass via IPv4-mapped IPv6 normalization in isPrivateIP
HighCVSS 8.5No exploitEPSS 0%librechat · librechatMar 27, 2026
- CVE-2025-6620134Monitor
LibreChat is Vulnerable to Server-Side Request Forgery (SSRF) in Actions Capability
HighCVSS 8.6No exploitEPSS 0%librechat · librechatNov 28, 2025
- CVE-2025-6645034Monitor
LibreChat JSON Injection in Chat POST Allows Remote Resource Inclusion and PXSS via Image Upload
HighCVSS 8.6No exploitEPSS 0%librechat · librechatDec 11, 2025
- CVE-2025-6922233Monitor
LibreChat is vulnerable to Server-Side Request Forgery due to missing restrictions
HighCVSS 8.1No exploitEPSS 5%librechat · librechatJan 7, 2026
- CVE-2026-5403632Monitor
LibreChat: 2FA Re-enrollment Allows Full Account 2FA Takeover Without OTP Verification
HighCVSS 8.1No exploitEPSS 0%librechat · librechatJun 25, 2026
- CVE-2025-4125832Monitor
LibreChat RAG API Authentication Bypass
HighCVSS 8.0No exploitEPSS 0%librechat · librechatMar 18, 2026
- CVE-2024-1116930Monitor
Unhandled Exception Leading to Server Crash in danny-avila/librechat
HighCVSS 7.5No exploitEPSS 1%librechat · librechatMar 20, 2025
- CVE-2024-1117230Monitor
Denial of Service in danny-avila/librechat
HighCVSS 7.5No exploitEPSS 1%librechat · librechatMar 20, 2025
- CVE-2024-1117130Monitor
Improper Input Validation in danny-avila/librechat
HighCVSS 7.5No exploitEPSS 1%librechat · librechatMar 20, 2025
- CVE-2026-427630Monitor
LibreChat RAG API, version 0.7.0, contains a log-injection vulnerability that allows attackers to forge log entries.
HighCVSS 7.5No exploitEPSS 0%librechat · librechatMar 16, 2026
- CVE-2025-5486830Monitor
LibreChat exposes arbitrary chats through Meilisearch engine
HighCVSS 7.5No exploitEPSS 0%librechat · librechatAug 5, 2025
- CVE-2026-3194530Monitor
LibreChat Server-Side Request Forgery using DNS resolution
HighCVSS 7.7No exploitEPSS 0%librechat · librechatMar 27, 2026
- CVE-2025-884930Monitor
Denial of Service in danny-avila/librechat
HighCVSS 7.5No exploitEPSS 0%librechat · librechatOct 30, 2025
- CVE-2025-710430Monitor
Mass Assignment in danny-avila/librechat
HighCVSS 7.5No exploitEPSS 0%librechat · librechatSep 29, 2025
- CVE-2026-3194430Monitor
LibreChat MCP OAuth callback does not validate browser session — allows token theft via redirect link
HighCVSS 7.6No exploitEPSS 0%librechat · librechatMar 13, 2026