pkg:PyPI/langchain
37 total CVEsCRITICAL23HIGH6MEDIUM5LOW1
✅ Check your installed version
All known vulnerabilities
- from 0, < 0.0.247
- CRITICAL9.8CVE-2023-39631Langchain vulnerable to arbitrary code execution via the evaluate function in the numexpr libraryfrom 0, < 0.0.308
- CRITICAL9.8CVE-2023-39631Langchain vulnerable to arbitrary code execution via the evaluate function in the numexpr libraryfrom 0, < 0.0.308
- from 0, < 0.0.171
- from 0, < 0.0.312
- from 0, < 0.0.325
- from 0, < 0.0.233
- from 0, < 0.0.247
- from 0, < 0.0.195
- from 0, < 0.0.236
- from 0, < 0.0.247
- from 0, < 0.0.236
- from 0, < 0.0.236
- from 0, < 0.0.236
- from 0, < 0.0.247
- from 0, < 0.0.247
- from 0, < 0.0.247
- from 0, < 0.0.247
- from 0, < 0.0.247
- from 0, < 0.0.225
- from 0, < 0.0.225
- from 0, < 0.0.132
- from 0, <= 0.0.131
- from 0, < 9ecb7240a480720ec9d739b3877a52f76098a2b8 | from 0, < 0.0.317
- from 0, < 0.0.317
- from 0, < 0.0.329
- from 0, < 0.0.247
- from 0, < 0.0.247
- HIGH7.1CVE-2026-45134LangSmith SDK: Public prompt pull deserializes untrusted manifests without trust boundary warningfrom 0, < 0.3.30
- from 0, < 0.0.353
- from 0, < c2a3021bb0c5f54649d380b42a0684ca5778c255 | from 0, < 0.2.0
- from 0, < 0.2.0
- from 0, < 0.2.5
- from 0, < 73c42306745b0831aa6fe7fe4eeb70d2c2d87a82 | from 0, < 0.2.5
- from 0, < 0.1.0
- from 0, < 0.1.11
- from 0, < 0.0.339