LibreChat version 0.8.1-rc2 uses the same JWT secret for the user session mechanism and RAG API which compromises the service-level authentication of the RAG API.
{
"cna_assigner": "sba-research",
"cwe_ids": [
"CWE-284"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/41xxx/CVE-2025-41258.json"
}{
"cpe": "cpe:2.3:a:librechat:librechat:0.8.1:rc2:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0.8.1-rc2"
},
{
"last_affected": "0.8.1-rc2"
}
],
"source": [
"AFFECTED_FIELD",
"CPE_STRING"
]
}