Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Deenob

Researcher fromREA Group
#13619of 53,625
19.6Total CVSS
Vulnerabilities · 2
Critical
2
PT-2024-29525
9.8
2024-07-22
Librechat · Librechat · CVE-2024-41703
**Name of the Vulnerable Software and Affected Versions** LibreChat versions prior to 0.7.4-rc1 **Description** The issue is related to incorrect access control for message updates. **Recommendations** For versions prior to 0.7.4-rc1, at the moment, there is no information about a newer version that contains a fix for this issue.
PT-2024-29526
9.8
2024-07-22
Librechat · Librechat · CVE-2024-41704
**Name of the Vulnerable Software and Affected Versions** LibreChat versions through 0.7.4-rc1 **Description** The issue is related to the lack of validation of normalized pathnames of images. This could potentially lead to unspecified consequences. **Recommendations** For versions through 0.7.4-rc1, consider validating image pathnames to prevent potential issues. At the moment, there is no information about a newer version that contains a fix for this issue.