REA Group is a digital business with more than 3,000 people working to change the way the world experiences property. REA is responsible for real-estate websites such as realestate.com.au, realcommercial.com.au, and many others.
This repository contains the public write-ups and disclosures made by REA Group's Security Team (REAGroupSec).
- CVE-2024-41703: Conversation Hijacking in LibreChat
- See also this walkthrough of the vulnerability.
- CVE-2024-41704: Path Traversal in LibreChat