QID 994866
Date Published: 2023-08-17
QID 994866: Python (Pip) Security Update for langchain (GHSA-92j5-3459-qgp4)
An issue in Harrison Chase langchain before version 0.0.236 and before allows a remote attacker to execute arbitrary code via the from_math_prompt and from_colored_object_prompt functions.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-92j5-3459-qgp4 for updates and patch information.
Vendor References
- GHSA-92j5-3459-qgp4 -
github.com/advisories/GHSA-92j5-3459-qgp4
CVEs related to QID 994866
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-92j5-3459-qgp4 | langchain |
|