Skip to content
LangChainGHSA-v8vj-cv27-hjv8

LangChain Experimental vulnerable to arbitrary code execution

Critical9.8CVE-2024-27444 · Published Feb 26, 2024 · updated Jun 29, 2026

langchain_experimental (aka LangChain Experimental) before 0.0.52, part of LangChain before 0.1.8, allows an attacker to bypass the CVE-2023-44467 fix and execute arbitrary code via the `__import__`, `__subclasses__`, `__builtins__`, `__globals__`, `__getattribute__`, `__bases__`, `__mro__`, or `__base__` attribute in Python code. These are not prohibited by `pal_chain/base.py`.

GitHub advisory

Affected versions

PackageAffectedFixed in
langchain-experimental
PyPI
< 0.0.520.0.52
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity from
GitHub (reviewed advisory)
Weakness
CWE-749
Also known as
CVE-2024-27444, PYSEC-2026-375

More LangChain advisories

All LangChain
Advisory
Server-Side Request Forgery in langchain-community.retrievers.web_research.WebResearchRetriever
Medium4.8Jun 6, 2024
langchain vulnerable to path traversal
Medium6.5Apr 16, 2024
LangChain's XMLOutputParser vulnerable to XML Entity Expansion
Medium5.9Mar 26, 2024
LangChain directory traversal vulnerability
LowMar 4, 2024
LangChain: server-side request forgery
Critical9.8Mar 1, 2024
langchain Server-Side Request Forgery vulnerability
Low3.7Feb 26, 2024

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.