216.73.217.22

CVE-2025-66201

· Published 29/11/2025 02:15 · Modified 03/12/2025 21:49

Labels: CVE-2025-66201 2025-11-29CVE-2025-66201CWE-20CWE-918[email protected]

Essential information

Published
29/11/2025 02:15
Modified
03/12/2025 21:49
Author
Creator
CVSS
8.6 HIGH (v3) 8.6 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

LibreChat is a ChatGPT clone with additional features. Prior to version 0.8.1-rc2, LibreChat is vulnerable to Server-side Request Forgery (SSRF), by passing specially crafted OpenAPI specs to its "Actions" feature and making the LLM use those actions. It could be used by an authenticated user with access to this feature to access URLs only accessible to the LibreChat server (such as cloud metadata services, through which impersonation of the server might be possible). This issue has been patched in version 0.8.1-rc2.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
librechat / librechat cpe:2.3:a:librechat:librechat:*:*:*:*:*:*:*:*
librechat / librechat cpe:2.3:a:librechat:librechat:0.8.1:-:*:*:*:*:*:*
librechat / librechat cpe:2.3:a:librechat:librechat:0.8.1:rc1:*:*:*:*:*:*

References