0.3.54
1 years ago
2 days ago
Known vulnerabilities in the langchain-core package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
langchain-core is a Building applications with LLMs through composability Affected versions of this package are vulnerable to Exposure of Sensitive System Information to an Unauthorized Control Sphere in the How to fix Exposure of Sensitive System Information to an Unauthorized Control Sphere? Upgrade | [,0.1.53)[0.2.0rc1,0.2.43)[0.3.0.dev0,0.3.15) |
langchain-core is a Building applications with LLMs through composability Affected versions of this package are vulnerable to Improper Restriction of XML External Entity Reference due to the Note: This is only exploitable if
How to fix Improper Restriction of XML External Entity Reference? Upgrade | [,0.1.34) |
langchain-core is a Building applications with LLMs through composability Affected versions of this package are vulnerable to Path Traversal due to improper validation of user-supplied input in the Notes:
How to fix Path Traversal? Upgrade | [,0.1.31) |