langroid
PyPI10 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting langroidpage 1 of 1
- CVE-2025-46724CRITICALCVSS 9.8EG 9.8✓ Fixed in 0.53.152025-05-20
vulnerable: 0.1.100 ... 0.9.5 (448 versions)
Langroid is a Python framework to build large language model (LLM)-powered applications. Prior to version 0.53.15, `TableChatAgent` uses `pandas eval()`. If fed by untrusted user input, like the case of a public-facing LLM application, it …
- CVE-2025-46725CRITICALCVSS 9.8EG 9.8✓ Fixed in 0.53.152025-05-20
vulnerable: 0.1.100 ... 0.9.5 (448 versions)
Langroid is a Python framework to build large language model (LLM)-powered applications. Prior to version 0.53.15, `LanceDocChatAgent` uses pandas eval() through `compute_from_docs()`. As a result, an attacker may be able to make the agent…
- CVE-2025-46726CRITICALCVSS 9.1EG 9.1✓ Fixed in 0.53.42025-05-05
vulnerable: 0.1.100 ... 0.9.5 (438 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.53.4, a LLM application leveraging `XMLToolMessage` class may be exposed to untrusted XML input that could result in DoS and/or exposing loc…
- CVE-2026-25481CRITICALCVSS 9.6EG 9.6✓ Fixed in 0.59.322026-02-04
vulnerable: 0.1.100 ... 0.9.5 (515 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.59.32, there is a bypass to the fix for CVE-2025-46724. TableChatAgent can call pandas_eval tool to evaluate the expression. There is a WAF …
- CVE-2026-25879CRITICALCVSS 9.8EG 9.8✓ Fixed in 0.63.02026-05-27
vulnerable: 0.1.100 ... 0.9.5 (530 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.63.0, SQLChatAgent executes SQL produced by an LLM, which is influenceable by prompt injection. When configured with a database role that ha…
- CVE-2026-50181HIGHCVSS 7.1EG 7.1✓ Fixed in 0.64.02026-07-02
vulnerable: 0.1.100 ... 0.9.5 (531 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.64.0, Langroid's `ReadFileTool` and `WriteFileTool` appear to treat `curr_dir` as the intended working-directory boundary for file operation…
- CVE-2026-54760CRITICALCVSS 9.3EG 9.3✓ Fixed in 0.65.12026-07-06
vulnerable: 0.1.100 ... 0.9.5 (533 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.65.1, the `SQLChatAgent` SQL-injection mitigation, with default `allow_dangerous_operations=False`, combines a raw-text regex blocklist (`_D…
- CVE-2026-54769CRITICALCVSS 10.0EG 10.0✓ Fixed in 0.65.22026-07-06
vulnerable: 0.1.100 ... 0.9.5 (534 versions)
Langroid is a framework for building large-language-model-powered applications. Versions prior to 0.65.2 are vulnerable to a critical Sandbox Escape leading to Remote Code Execution (RCE) in its `TableChatAgent` and `VectorStore` capabilit…
- CVE-2026-54771HIGHCVSS 8.1EG 8.1✓ Fixed in 0.65.32026-07-06
vulnerable: 0.1.100 ... 0.9.5 (535 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.65.3, a Langroid application exposing a chat interface to untrusted users may allow direct tool invocation via raw JSON payloads, even when …
- CVE-2026-55615CRITICALCVSS 9.2EG 9.2✓ Fixed in 0.65.52026-07-06
vulnerable: 0.1.100 ... 0.9.5 (537 versions)
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.65.5, Neo4jChatAgent passes LLM-generated Cypher queries straight to the Neo4j driver with no validation, no statement-type allowlist, and n…
Check whether langroid is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for langroid CVEs against the assets you own.
Start Free Scan →