CVE-2025-41258
LibreChat version 0.8.1-rc2 uses the same JWT secret for the user session mechanism and RAG API which compromises the service-level authentication of the RAG API.
Vendor
Product
CWE
Yayın Tarihi
2026-03-18 12:16:18
Güncelleme
2026-03-24 18:41:38
Source Identifier
1e3a9e0f-5156-4bf8-b8a3-cc311bfc0f4a
KEV Date Added
-