Skip to content

langchain

Typescript bindings for langchain

Declares an LLM dependency since 2023-02-14 (version 0.0.4).

npmLatest 1.5.16First release 2023-02-14Registry pageRepositoryChecked 2026-10-09

Advisories

Advisories that name langchain as affected. Advisory records do not state an ecosystem, so packages with the same name in other ecosystems also match. For a version-exact check of your own dependencies, use Stack Check.

AdvisorySeverityAffectedFixed inPublished
CVE-2026-55443CVE-2026-55443: LangChain is a framework for building agents and LLM-powered applications. Prior to 1.3.9, several LangChain components…Medium<= 1.3.81.3.92026-06-22
GHSA-gr75-jv2w-4656: LangChain: Path traversal and sandbox escape in LangChain file-search middleware and loadersMedium<= 1.3.81.3.92026-06-16
CVE-2026-45134GHSA-3644-q5cj-c5c7: LangSmith SDK: Public prompt pull deserializes untrusted manifests without trust boundary warningHigh< 0.3.300.3.302026-05-13
CVE-2025-68665CVE-2025-68665: LangChain is a framework for building LLM-powered applications. Prior to @langchain/core versions 0.3.80 and 1.1.8, and…High>= 1.0.0, < 1.2.31.2.32025-12-24
CVE-2024-8309CVE-2024-8309: A vulnerability in the GraphCypherQAChain class of langchain-ai/langchain version 0.2.5 allows for SQL injection…Critical< 0.2.00.2.02024-10-29
CVE-2024-7774CVE-2024-7774: A path traversal vulnerability exists in the `getFullPath` method of langchain-ai/langchainjs version 0.2.5. This…Critical< 0.2.190.2.192024-10-29
CVE-2024-3571CVE-2024-3571: langchain-ai/langchain is vulnerable to path traversal due to improper limitation of a pathname to a restricted…High< 0.0.3530.0.3532024-04-16
CVE-2024-28088CVE-2024-28088: LangChain through 0.1.10 allows ../ directory traversal by an actor who is able to control the final part of the path…High< 0.0.3390.0.3392024-03-04
CVE-2023-32786CVE-2023-32786: In Langchain through 0.0.155, prompt injection allows an attacker to force the service to retrieve data from an…High< 0.0.3290.0.3292023-10-21
CVE-2023-46229CVE-2023-46229: LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an…High>= 0, < 0.0.3170.0.3172023-10-19
CVE-2023-39631CVE-2023-39631: An issue in LanChain-ai Langchain v.0.0.245 allows a remote attacker to execute arbitrary code via the evaluate…Critical< 0.0.3080.0.3082023-09-01
CVE-2023-36281CVE-2023-36281: An issue in langchain v.0.0.171 allows a remote attacker to execute arbitrary code via a JSON file to load_prompt. This…Critical< 0.0.3120.0.3122023-08-22
CVE-2023-39659CVE-2023-39659: An issue in langchain langchain-ai v.0.0.232 and before allows a remote attacker to execute arbitrary code via a…Critical< 0.0.3250.0.3252023-08-15
CVE-2023-38896CVE-2023-38896: An issue in Harrison Chase langchain v.0.0.194 and before allows a remote attacker to execute arbitrary code via the…Critical< 0.0.2360.0.2362023-08-15
CVE-2023-38860CVE-2023-38860: An issue in LangChain v.0.0.231 allows a remote attacker to execute arbitrary code via the prompt parameter.Critical>= 0, < 0.0.2470.0.2472023-08-15
CVE-2023-36095CVE-2023-36095: An issue in Harrison Chase langchain v.0.0.194 allows an attacker to execute arbitrary code via the python exec calls…Critical< 0.0.2360.0.2362023-08-05
CVE-2023-36189CVE-2023-36189: SQL injection vulnerability in langchain before v0.0.247 allows a remote attacker to obtain sensitive information via…High>= 0, < 0.0.2470.0.2472023-07-06
CVE-2023-36188CVE-2023-36188: An issue in langchain v.0.0.64 allows a remote attacker to execute arbitrary code via the PALChain parameter in the…Critical< 0.0.2470.0.2472023-07-06
CVE-2023-36258CVE-2023-36258: An issue in LangChain before 0.0.236 allows an attacker to execute arbitrary code because Python code with os.system…Critical< 0.0.2470.0.2472023-07-04
CVE-2023-34541CVE-2023-34541: Langchain 0.0.171 is vulnerable to Arbitrary code execution in load_prompt.Critical< 0.0.2470.0.2472023-06-20
CVE-2023-34540CVE-2023-34540: Langchain before v0.0.225 was discovered to contain a remote code execution (RCE) vulnerability in the component…Critical< 0.0.2250.0.2252023-06-14
CVE-2023-29374CVE-2023-29374: In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code…Critical<= 0.0.1312023-04-05

Dependencies of the latest release

As declared in npm metadata for version 1.5.16. Optional extras are listed with their extra name.

Tracked packages that depend on it

Among the packages in the registry; not every dependent on npm.