PT-2026-52494 · Librechat · Librechat

·

CVE-2026-54030

·

Published

2026-06-25

·

Updated

2026-06-30

CVSS v3.1

9.3

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions LibreChat versions prior to 0.8.5
Description LibreChat is an enhanced ChatGPT clone supporting multiple AI providers. The MCP OAuth implementation fails to validate that the resource parameter from OAuth Protected Resource metadata (RFC 9728) matches the configured MCP server URL. This flaw allows a malicious MCP server to steal access tokens intended for a legitimate server.
Recommendations Update to version 0.8.5.

Exploit

Fix

Origin Validation Error

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-54030
GHSA-GVPJ-VM2F-2M23

Affected Products

Librechat