Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying a crafted filename in an uploaded file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Libre Chat 安全漏洞
Vulnerability Description
Libre Chat是Vincent Emonet个人开发者的一个免费开源大型语言模型 (LLM) 聊天机器人 Web UI 和 API。 Libre Chat v0.0.6版本存在安全漏洞,该漏洞源于upload_documents方法中存在一个问题。攻击者利用该漏洞可以在已上传的文件中提供精心设计的文件名来执行路径遍历。
CVSS Information
N/A
Vulnerability Type
N/A