LowVulnerability
GHSA-h9j7-5xvc-qhg5: langchain Server-Side Request Forgery vulnerability
- Identifiers
- CVE-2024-0243GHSA-h9j7-5xvc-qhg5
- Published
- Record updated
- Affected
- langchain < 0.1.0
- Fixed in
- 0.1.0
- Known exploitation
- Not listed in the CISA Known Exploited Vulnerabilities catalog at the last check.
- EPSS
- 0.5%
Summary
The langchain RecursiveUrlLoader in libs/community, in langchain_community/document_loaders/recursive_url_loader.py, can be made to fetch URLs outside the start site. An attacker who controls the content at the crawled URL can add links to other hosts, such as https://example.completely.different/my_file.html, and the crawler downloads them even when prevent_outside=True is set.
Mitigation
Resolved in https://github.com/langchain-ai/langchain/pull/15559
Affected packages in the Exposure Registry
Matched by package name and ecosystem. Each entry shows whether the package delegates to a language model and how many tracked packages depend on it.
- langchainPyPILLM dependency since 2022-10-25 · 30 tracked dependents
Related items
- HighCVE-2026-106119: LangChain MongoDBChatMessageHistory query injection via session identifierSame vendor · NVD/CVE Database
- LowGHSA-5x6v-p487-7qh2: LangChain: RediSearch Filter Injection via Unescaped Tag/Text ValuesSame vendor · GitHub Advisory Database
- HighGHSA-fvww-7h3r-vfhp: LangGraph SDK custom auth silently ignores actions= on resource decoratorsSame vendor · GitHub Advisory Database
- HighCVE-2026-72848: SitemapLoader nested sitemap entries bypass restrict_to_same_domainSame vendor · NVD/CVE Database
- HighGHSA-533j-2v4q-mw5h: LangChain MongoDB has NoSQL Operator Injection in MongoDBSaver.list() leading to cross-tenant data exposureSame vendor · GitHub Advisory Database