GHSA-57fc-8q82-gfp3CriticalCVSS 9.8

langchain vulnerable to arbitrary code execution

Published
July 6, 2023
Last Modified
July 6, 2026

🔗 CVE IDs covered (1)

📋 Description

An issue in langchain allows a remote attacker to execute arbitrary code via the PALChain parameter in the Python exec method.

🎯 Affected products1

  • pip/langchain:< 0.0.247

🔗 References (7)