{"api_version":"v1","generated_at":"2026-10-09T22:35:00+00:00","product":{"cve_count":18,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-danny-avila-danny-avila-librechat-23a6ee81fe63","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"danny-avila/librechat","next_cursor":null,"observations":[{"affected":"unspecified < v0.7.9","affected_versions_present":true,"cve_id":"CVE-2025-7105","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-7105","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-02T13:19:12.269Z","patch_url":"","primary_source":"","published":"2026-02-02T10:36:24.368Z"},{"affected":"danny-avila/librechat: unspecified < v0.8.0-rc2","affected_versions_present":true,"cve_id":"CVE-2025-8849","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-8849","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-31T15:09:34.057Z","patch_url":"https://github.com/danny-avila/librechat/commit/edf33bedcbb08c33e59df76f06454ed7efd896f9","primary_source":"","published":"2025-10-30T23:42:41.552Z"},{"affected":"danny-avila/librechat: unspecified < v0.8.0-rc2","affected_versions_present":true,"cve_id":"CVE-2025-8850","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-8850","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-11-05T14:57:26.783Z","patch_url":"https://huntr.com/bounties/8e615709-f4de-41e2-b194-f0d91ed7c75e","primary_source":"","published":"2025-10-30T19:59:36.327Z"},{"affected":"danny-avila/librechat: unspecified \u2264 latest","affected_versions_present":true,"cve_id":"CVE-2025-8848","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-8848","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-10-30T18:22:51.121Z","patch_url":"","primary_source":"","published":"2025-10-22T13:54:00.389Z"},{"affected":"unspecified < v0.7.9","affected_versions_present":true,"cve_id":"CVE-2025-7104","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-7104","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-15T16:08:39.319Z","patch_url":"https://huntr.com/bounties/32a175c4-7543-4503-a3d0-7880abd1826b","primary_source":"","published":"2025-09-29T17:10:59.630Z"},{"affected":"unspecified < v0.7.9","affected_versions_present":true,"cve_id":"CVE-2025-7106","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-7106","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-23T19:29:47.785Z","patch_url":"https://huntr.com/bounties/7de2765b-d1fe-4495-9144-220070857c48","primary_source":"","published":"2025-09-23T09:54:33.716Z"},{"affected":"unspecified < v0.7.9-rc1","affected_versions_present":true,"cve_id":"CVE-2025-6088","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6088","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-11T14:42:34.879Z","patch_url":"https://huntr.com/bounties/361405bb-a739-41eb-a680-4cb6193e7c76","primary_source":"","published":"2025-09-11T00:43:51.699Z"},{"affected":"unspecified < 0.7.5","affected_versions_present":true,"cve_id":"CVE-2024-10359","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-10359","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-20T18:17:28.379Z","patch_url":"https://github.com/danny-avila/librechat/commit/e3e52402f69accc35c6d0acd9c3266ae1cb6333f","primary_source":"","published":"2025-03-20T10:10:44.510Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-11173","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11173","fixed":"0.7.6.","last_modified":"2025-03-20T18:19:53.277Z","patch_url":"https://github.com/danny-avila/librechat/commit/95a212534f1c5991bd1231a34ac3668b4b592cc3","primary_source":"","published":"2025-03-20T10:10:33.944Z"},{"affected":"unspecified < 0.7.5","affected_versions_present":true,"cve_id":"CVE-2024-10363","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-10363","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-15T12:49:26.990Z","patch_url":"https://github.com/danny-avila/librechat/commit/42a4d02c62e2a6cf677d1cb6cfcb36d136aaa599","primary_source":"","published":"2025-03-20T10:10:19.050Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-11171","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11171","fixed":"0.7.6.","last_modified":"2025-10-15T12:49:28.195Z","patch_url":"https://github.com/danny-avila/librechat/commit/bb58a2d0662ef86dc75a9d2f6560125c018e3836","primary_source":"","published":"2025-03-20T10:10:18.684Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-11172","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11172","fixed":"0.7.6.","last_modified":"2025-10-15T12:49:28.544Z","patch_url":"https://github.com/danny-avila/librechat/commit/976784c01fa4cce00d4c2941801d56aed375c21b","primary_source":"","published":"2025-03-20T10:10:06.689Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-11169","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11169","fixed":"0.7.6.","last_modified":"2025-03-20T18:32:06.181Z","patch_url":"https://github.com/danny-avila/librechat/commit/629be5c0ca2b332178524b4e3f6fac715aea8cc4","primary_source":"","published":"2025-03-20T10:09:59.233Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-11167","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11167","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-07-15T10:48:56.854Z","patch_url":"https://github.com/danny-avila/librechat/commit/5071bdbf9ac621165f0e8d009818851f3951eee7","primary_source":"","published":"2025-03-20T10:09:49.100Z"},{"affected":"unspecified < 0.7.5","affected_versions_present":true,"cve_id":"CVE-2024-10366","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-10366","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-07-15T10:48:56.156Z","patch_url":"https://github.com/danny-avila/librechat/commit/a350443661d001ac55787741969a75d94ca14116","primary_source":"","published":"2025-03-20T10:09:37.556Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-12580","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-12580","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-20T18:56:54.526Z","patch_url":"https://github.com/danny-avila/librechat/commit/95d6bd2c2db4a09b308be2b96e3d5fd522c7b72a","primary_source":"","published":"2025-03-20T10:09:16.971Z"},{"affected":"unspecified < 0.7.5","affected_versions_present":true,"cve_id":"CVE-2024-10361","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-10361","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-15T12:50:08.542Z","patch_url":"https://github.com/danny-avila/librechat/commit/0b744db1e2af31a531ffb761584d85540430639c","primary_source":"","published":"2025-03-20T10:09:09.995Z"},{"affected":"unspecified < 0.7.6","affected_versions_present":true,"cve_id":"CVE-2024-11170","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11170","fixed":"0.7.6.","last_modified":"2025-03-20T18:59:47.731Z","patch_url":"https://github.com/danny-avila/librechat/commit/629be5c0ca2b332178524b4e3f6fac715aea8cc4","primary_source":"","published":"2025-03-20T10:08:59.584Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"danny-avila"}}
