Skip to main content
Loading…
    CVE-2025-8850 — In danny-avila/librechat version 0.7.9, there is an insecure API design issue in the 2-Factor Authentication (2FA) flow. The system allows users to disable 2FA without requiring a valid OTP or backup — CVE Database · The Intelligence Room