criticalOther UnknownPublish anonymously
LibreChat MCP command injection (STDIO)
by Publish anonymously · 2 days agoviews 0en
PII protected
Personal information such as emails, phone numbers, IDs and access tokens are automatically masked before publication.
Command injection in LibreChat's MCP STDIO integration; instance of the systemic STDIO configuration-to-command-execution flaw in Anthropic MCP propagating through downstream clients.