{"data":{"id":"ad54c873-4174-4ce5-bb12-07f7a5020b09","title":"GHSA-x34r-63hx-w57f: Langroid has WAF Bypass Leading to RCE in TableChatAgent","summary":"Langroid versions up to and including 0.59.31 are affected by a bypass of the WAF in `langroid/utils/pandas_utils.py` that was added for CVE-2025-46724. Because `_literal_ok()` returns `False` instead of raising `UnsafeCommandError` on invalid input, and dunder attributes such as `__init__`, `__globals__` and `__builtins__` remain accessible, attacker-supplied input to the `pandas_eval` tool of `TableChatAgent` can reach the `eval` builtin. The source reports this allows arbitrary shell command execution on the server.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://github.com/advisories/GHSA-x34r-63hx-w57f","publishedAt":"2026-02-02T20:42:28.000Z","cveId":"CVE-2026-25481","cweIds":["CWE-94"],"cvssScore":null,"cvssSeverity":"critical","severity":"critical","attackType":["other"],"issueType":"vulnerability","affectedPackages":["langroid@<= 0.59.31 (fixed: 0.59.32)"],"affectedPackageNames":["langroid"],"affectedPackageRefs":["pypi:langroid"],"affectedVendors":[],"affectedVendorsRaw":["Langroid","TableChatAgent","pandas_eval"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0.00817,"epssCheckedAt":"2026-10-10T04:57:21.591Z","kevDateAdded":null,"advisoryAliases":["GHSA-x34r-63hx-w57f"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":true,"disclosureDate":"2026-02-02T20:42:28.000Z","capecIds":["CAPEC-242"],"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":false,"classifierConfidence":0.95,"researchCategory":null,"atlasIds":null}}