VYPR
High severity7.5NVD Advisory· Published Mar 16, 2026· Updated Jun 5, 2026

CVE-2026-4276

CVE-2026-4276

Description

LibreChat RAG API, version 0.7.0, contains a log-injection vulnerability that allows attackers to forge log entries.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:librechat:librechat:0.7.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:librechat:librechat:0.7.0:*:*:*:*:*:*:*
    • (no CPE)range: =0.7.0
  • LibreChat/RAG APIv5
    Range: 0.7.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.