PT-2026-25366 · Librechat · Librechat

Danny-Avilapublished

·

Publicado

2026-03-13

·

Atualizado

2026-03-18

·

CVE-2026-31944

CVSS v3.1

7.6

Alta

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions LibreChat versions 0.8.2 through 0.8.2-rc3
Description LibreChat is a ChatGPT clone with additional features. The MCP (Model Context Protocol) OAuth callback endpoint does not verify that the browser hitting the redirect URL is logged in or that the logged-in user matches the initiator. This allows an attacker to obtain a victim’s OAuth tokens after sending them an authorization URL, leading to account takeover of the victim’s MCP-linked services, such as Atlassian and Outlook. The issue is a confused deputy problem.
Recommendations Update to version 0.8.3-rc1 or later.

Exploit

Correção

Missing Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-07911
CVE-2026-31944
GHSA-VF7J-7MRX-HP7G

Produtos afetados

Librechat