Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Aliceqwas

#32344of 55,131
8.1Total CVSS
Vulnerabilities · 1
PT-2026-45883
8.1
2026-06-02
Librechat · Librechat · CVE-2026-44654
**Name of the Vulnerable Software and Affected Versions** LibreChat versions prior to 0.8.4 **Description** A cross-agent integrity violation exists where a shared-agent editor can delete file records globally. By using the "DELETE /api/files" endpoint, an editor can remove files that the owner has reused across multiple agents. This action deletes the file entirely rather than just from the shared agent, causing the owner's private agents to break silently because they retain a stale `file id` reference that no longer resolves. **Recommendations** Update to version 0.8.4.