PT-2026-31026 · Danny Avila · Librechat

Logggg2402

·

Published

2026-04-07

·

Updated

2026-04-07

·

CVE-2026-34371

CVSS v3.1

6.3

Medium

AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:H/A:N
LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the execute code sandbox when persisting code-generated artifacts. On deployments using the default local file strategy, a malicious artifact filename containing traversal sequences (for example, ../../../../../app/client/dist/poc.txt) is concatenated into the server-side destination path and written with fs.writeFileSync() without sanitization. This gives any user who can trigger execute code an arbitrary file write primitive as the LibreChat server user. This vulnerability is fixed in 0.8.4.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2026-34371

Affected Products

Librechat