CVE-2025-66201 - LibreChat is Vulnerable to Server-Side Request Forgery (SSRF) in Actions Capability

CVE-2025-66201 - LibreChat is Vulnerable to Server-Side Request Forgery (SSRF) in Actions Capability

CVE ID : CVE-2025-66201 Published : Nov. 29, 2025, 2:15 a.m. | 15 minutes ago Description : LibreChat is a ChatGPT clone with additional features. Prior to version 0.8.1-rc2, LibreChat is vulnerable to Server-side Request Forgery (SSRF), by passing specially crafted OpenAPI specs to its

CVE Details

Published
Nov. 29, 2025
Impact: SSRF

Source: Telegram CVE Monitor