GHSA-jqmf-mx4f-hfr6: Vibe-Trading LLM-callable tools permit command execution, code injection, and SSRF
Summary
Vibe-Trading's LLM-callable tools contain five critical vulnerabilities that allow remote code execution and data exfiltration. The main issue is that BashTool passes commands from the LLM directly to the operating system without any filtering, and all five tools are automatically available to the LLM agent by default with no authentication required. Additionally, attackers can inject malicious instructions into documents that the LLM processes, tricking it into executing harmful commands.
Classification
Affected Vendors
Affected Packages
Related Issues
CVE-2026-34371: LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the e
CVE-2024-27444: langchain_experimental (aka LangChain Experimental) in LangChain before 0.1.8 allows an attacker to bypass the CVE-2023-
Original source: https://github.com/advisories/GHSA-jqmf-mx4f-hfr6
First tracked: October 2, 2026 at 08:01 PM
Classified by LLM (prompt v3) · confidence: 95%