Vulnerability Details CVE-2026-4276
LibreChat RAG API, version 0.7.0, contains a log-injection vulnerability that allows attackers to forge log entries.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 19.2%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2026-4276
-
cpe:2.3:a:librechat:librechat:0.7.0