Skip to content
LangChainGHSA-7q94-qpjr-xpgm

langchain SQL Injection vulnerability

High7.5CVE-2023-36189 · Published Jul 6, 2023 · updated Oct 21, 2024

GitHub advisory

Affected versions

PackageAffectedFixed in
langchain
PyPI
< 0.0.2470.0.247
Details and references

More LangChain advisories

All LangChain
DateAdvisory
Jul 62023langchain vulnerable to arbitrary code execution
CVE-2023-36188Critical9.8fixed in 0.0.247
Jul 32023langchain arbitrary code execution vulnerability
CVE-2023-36258Critical9.8fixed in 0.0.247
Jun 202023Langchain vulnerable to arbitrary code execution
CVE-2023-34541Critical9.8fixed in 0.0.247
Jun 142023Langchain OS Command Injection vulnerability
CVE-2023-34540Critical9.8fixed in 0.0.225
Aug 52023langchain Code Injection vulnerability
CVE-2023-36095Critical9.8fixed in 0.0.236
Aug 152023LangChain vulnerable to arbitrary code execution
CVE-2023-38896Critical9.8fixed in 0.0.236

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.