A vulnerability described as critical has been identified in danny-avila LibreChat up to 0.8.2/0.8.2-rc2/0.8.3-rc1. This impacts an unknown function of the component DNS Resolution Handler. Such manipulation leads to server-side request forgery.
This vulnerability is traded as CVE-2026-31945. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.