CVE-2025-69220: LibreChat has Insufficient Access Control for Agent Files
LibreChat is a ChatGPT clone with additional features. Version 0.8.1-rc2 does not enforce proper access control for file uploads to an agents file context and file search. An authenticated attacker with access to the agent ID can change the behavior of arbitrary agents by uploading new files to the file context or file search, even if they have no permissions for this agent. This issue is fixed in version 0.8.2-rc2.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-69220?
CVE-2025-69220 has a high severity level due to inadequate access control for file uploads.
How do I fix CVE-2025-69220?
To fix CVE-2025-69220, update LibreChat to version 0.8.2-rc2 or later.
Who is affected by CVE-2025-69220?
CVE-2025-69220 affects all users of LibreChat version 0.8.1-rc2.
What type of vulnerability is CVE-2025-69220?
CVE-2025-69220 is an access control vulnerability related to file upload functionality.
What can an attacker do with CVE-2025-69220?
An authenticated attacker can exploit CVE-2025-69220 to change the behavior of arbitrary agents by uploading malicious files.