Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-11169

Опубликовано: 20 мар. 2025
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

An unhandled exception in danny-avila/librechat version 3c94ff2 can lead to a server crash. The issue occurs when the fs module throws an exception while handling file uploads. An unauthenticated user can trigger this exception by sending a specially crafted request, causing the server to crash. The vulnerability is fixed in version 0.7.6.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:librechat:librechat:*:*:*:*:*:*:*:*
Версия до 0.7.6 (исключая)

EPSS

Процентиль: 73%
0.00793
Низкий

7.5 High

CVSS3

Дефекты

CWE-115

Связанные уязвимости

CVSS3: 7.5
github
11 месяцев назад

An unhandled exception in danny-avila/librechat version 3c94ff2 can lead to a server crash. The issue occurs when the fs module throws an exception while handling file uploads. An unauthenticated user can trigger this exception by sending a specially crafted request, causing the server to crash. The vulnerability is fixed in version 0.7.6.

EPSS

Процентиль: 73%
0.00793
Низкий

7.5 High

CVSS3

Дефекты

CWE-115