LibreChat is a ChatGPT clone with additional features. Version 0.8.1-rc2 does not enforce proper access control for file uploads to an agents file context and file search. An authenticated attacker with access to the agent ID can change the behavior of arbitrary agents by uploading new files to the file context or file search, even if they have no permissions for this agent. This issue is fixed in version 0.8.2-rc2.
References
Configurations
Configuration 1 (hide)
|
History
15 Jan 2026, 21:44
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:librechat:librechat:0.8.1:-:*:*:*:*:*:* cpe:2.3:a:librechat:librechat:0.8.1:rc1:*:*:*:*:*:* |
|
| References | () https://cwe.mitre.org/data/definitions/284.html - Not Applicable | |
| References | () https://cwe.mitre.org/data/definitions/862.html - Not Applicable | |
| References | () https://github.com/danny-avila/LibreChat/commit/4b9c6ab1cb9de626736de700c7981f38be08d237 - Patch | |
| References | () https://github.com/danny-avila/LibreChat/releases/tag/v0.8.2-rc2 - Release Notes | |
| References | () https://github.com/danny-avila/LibreChat/security/advisories/GHSA-xcmf-rpmh-hg59 - Exploit, Vendor Advisory | |
| References | () https://owasp.org/Top10/A01_2021-Broken_Access_Control - Not Applicable | |
| References | () https://owasp.org/www-project-web-security-testing-guide/v42/4-Web_Application_Security_Testing/05-Authorization_Testing/02-Testing_for_Bypassing_Authorization_Schema.html - Technical Description | |
| References | () https://raw.githubusercontent.com/OWASP/ASVS/v5.0.0/5.0/OWASP_Application_Security_Verification_Standard_5.0.0_en.pdf - Technical Description | |
| First Time |
Librechat
Librechat librechat |
07 Jan 2026, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-07 21:15
Updated : 2026-01-15 21:44
NVD link : CVE-2025-69220
Mitre link : CVE-2025-69220
CVE.ORG link : CVE-2025-69220
JSON object : View
Products Affected
librechat
- librechat
