Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6827-g8xf-36c7

Опубликовано: 20 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A vulnerability in danny-avila/librechat version git a1647d7 allows an unauthenticated attacker to cause a denial of service by sending a crafted payload to the server. The middleware checkBan is not surrounded by a try-catch block, and an unhandled exception will cause the server to crash. This issue is fixed in version 0.7.6.

A vulnerability in danny-avila/librechat version git a1647d7 allows an unauthenticated attacker to cause a denial of service by sending a crafted payload to the server. The middleware checkBan is not surrounded by a try-catch block, and an unhandled exception will cause the server to crash. This issue is fixed in version 0.7.6.

EPSS

Процентиль: 53%
0.00305
Низкий

7.5 High

CVSS3

Дефекты

CWE-248
CWE-400

Связанные уязвимости

CVSS3: 7.5
nvd
11 месяцев назад

A vulnerability in danny-avila/librechat version git a1647d7 allows an unauthenticated attacker to cause a denial of service by sending a crafted payload to the server. The middleware `checkBan` is not surrounded by a try-catch block, and an unhandled exception will cause the server to crash. This issue is fixed in version 0.7.6.

CVSS3: 7.5
fstec
больше 1 года назад

Уязвимость сценария checkBan.js платформы на базе искуственного интеллекта LibreChat, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 53%
0.00305
Низкий

7.5 High

CVSS3

Дефекты

CWE-248
CWE-400