PT-2026-28430 · Librechat · Librechat

Jaehonam

·

Publicado

2026-03-27

·

Atualizado

2026-04-27

·

CVE-2026-31945

CVSS v3.1

7.7

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions LibreChat versions 0.8.2-rc2 through 0.8.2
Description LibreChat, a ChatGPT clone with additional features, has a server-side request forgery (SSRF) issue in versions 0.8.2-rc2 through 0.8.2 when utilizing agent actions or MCP. A prior SSRF fix only implemented hostname validation and did not prevent DNS resolution to private IP addresses. This allows attackers to bypass the protection and access internal resources, such as an internal RAG API or cloud instance metadata endpoints. The vulnerable component does not verify whether DNS resolution results in a private IP address.
Recommendations Update to version 0.8.3-rc1 or later.

Exploit

Correção

SSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-31945
GHSA-F92M-JPV7-55P2

Produtos afetados

Librechat