Vulnerabilities > Langchain

DATE CVE VULNERABILITY TITLE RISK
2023-06-14 CVE-2023-34540 Unspecified vulnerability in Langchain 0.0.171
Langchain before v0.0.225 was discovered to contain a remote code execution (RCE) vulnerability in the component JiraAPIWrapper (aka the JIRA API wrapper).
network
low complexity
langchain
critical
9.8
2023-04-05 CVE-2023-29374 Injection vulnerability in Langchain
In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code via the Python exec method.
network
low complexity
langchain CWE-74
critical
9.8