PT-2026-28430 · Librechat · Librechat
Jaehonam
·
Publicado
2026-03-27
·
Atualizado
2026-04-27
·
CVE-2026-31945
CVSS v3.1
7.7
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
LibreChat versions 0.8.2-rc2 through 0.8.2
Description
LibreChat, a ChatGPT clone with additional features, has a server-side request forgery (SSRF) issue in versions 0.8.2-rc2 through 0.8.2 when utilizing agent actions or MCP. A prior SSRF fix only implemented hostname validation and did not prevent DNS resolution to private IP addresses. This allows attackers to bypass the protection and access internal resources, such as an internal RAG API or cloud instance metadata endpoints. The vulnerable component does not verify whether DNS resolution results in a private IP address.
Recommendations
Update to version 0.8.3-rc1 or later.
Exploit
Correção
SSRF
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Librechat