Known Vulnerabilities for Langchain by Langchain-ai
Listed below are 10 of the newest known vulnerabilities associated with "Langchain" by "Langchain-ai".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-45401 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.5, the valida... | Not Provided | 2026-05-15 | 2026-05-18 |
| CVE-2026-45134 json | LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to LangSmith SDK Python 0.8.0 and JS/T... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-44843 json | LangChain is a framework for building agents and LLM-powered applications. Prior to 0.3.85 and 1.3.3, LangChain contains olde... | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-41488 json | LangChain is a framework for building agents and LLM-powered applications. Prior to 1.1.14, langchain-openai's _url_to_size()... | Not Provided | 2026-04-24 | 2026-04-27 |
| CVE-2026-41481 json | LangChain is a framework for building agents and LLM-powered applications. Prior to langchain-text-splitters 1.1.2, HTMLHead... | Not Provided | 2026-04-24 | 2026-04-25 |
| CVE-2026-40087 json | LangChain is a framework for building agents and LLM-powered applications. Prior to 0.3.84 and 1.2.28, LangChain's f-string p... | Not Provided | 2026-04-09 | 2026-04-14 |
| CVE-2026-34070 json | LangChain is a framework for building agents and LLM-powered applications. Prior to version 1.2.22, multiple functions in lan... | Not Provided | 2026-03-31 | 2026-03-31 |
| CVE-2026-30617 json | LangChain-ChatChat 0.3.1 contains a remote code execution vulnerability in its MCP STDIO server configuration and execution h... | Not Provided | 2026-04-15 | 2026-04-15 |
| CVE-2026-7847 json | A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3. The affected element is the function _get_file_... | Not Provided | 2026-05-05 | 2026-05-05 |
| CVE-2026-7846 json | A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the file... | Not Provided | 2026-05-05 | 2026-05-05 |