Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gmqg-7635-v6cj

Опубликовано: 20 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An unhandled exception in danny-avila/librechat version 3c94ff2 can lead to a server crash. The issue occurs when the fs module throws an exception while handling file uploads. An unauthenticated user can trigger this exception by sending a specially crafted request, causing the server to crash. The vulnerability is fixed in version 0.7.6.

An unhandled exception in danny-avila/librechat version 3c94ff2 can lead to a server crash. The issue occurs when the fs module throws an exception while handling file uploads. An unauthenticated user can trigger this exception by sending a specially crafted request, causing the server to crash. The vulnerability is fixed in version 0.7.6.

EPSS

Процентиль: 73%
0.00793
Низкий

7.5 High

CVSS3

Дефекты

CWE-115

Связанные уязвимости

CVSS3: 7.5
nvd
11 месяцев назад

An unhandled exception in danny-avila/librechat version 3c94ff2 can lead to a server crash. The issue occurs when the fs module throws an exception while handling file uploads. An unauthenticated user can trigger this exception by sending a specially crafted request, causing the server to crash. The vulnerability is fixed in version 0.7.6.

EPSS

Процентиль: 73%
0.00793
Низкий

7.5 High

CVSS3

Дефекты

CWE-115