An arbitrary file deletion vulnerability exists in danny-avila/librechat version v0.7.5-rc2, specifically within the /api/files endpoint. This vulnerability arises from improper input validation, allowing path traversal techniques to delete arbitrary files on the server. Attackers can exploit this to bypass security mechanisms and delete files outside the intended directory, including critical system files, user data, or application resources. This vulnerability impacts the integrity and availability of the system.
The vulnerability results from insufficient input validation in the /api/files endpoint. An attacker can exploit path traversal techniques (e.g., '../' sequences) in request parameters to escape the intended application directory. This makes it possible to specify and delete files located anywhere on the server file system, including critical system files, user data, or application resources.
An attacker can permanently delete any files accessible to the application process, leading to violation of system integrity and availability — including disruption of application functionality or the entire operating system.
Apply patches available from the vendor according to references — fix available in commit 0b744db1e2af31a531ffb761584d85540430639c in the danny-avila/librechat GitHub repository.
LibreChat version v0.7.5-rc2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:HLibrechat
APPLibrechat0.7.5
Related vulnerabilities
LibreChat: wyciek zmiennych środowiskowych przez konfigurację MCP
LibreChat: RCE jako root przez MCP stdio transport bez walidacji poleceń
SSRF w LibreChat — brak ograniczeń funkcji Actions w domyślnej konfiguracji
Path Traversal w LibreChat — brak walidacji ścieżek obrazów
LibreChat — nieprawidłowa kontrola dostępu przy aktualizacji wiadomości