MEDIUM 5.3 npm PyPI
GHSA-rr7j-v2q5-chgv · CVE-2026-41182 LangSmith SDK: Streaming token events bypass output redaction
Modified: 5/6/2026
package
pkg:pypi/langsmith
LangSmith SDK: Streaming token events bypass output redaction
Modified: 5/6/2026
LangSmith Client SDK Affected by Server-Side Request Forgery via Tracing Header Injection
Modified: 2/22/2026
LangSmith SDK: Public prompt pull deserializes untrusted manifests without trust boundary warning
Modified: 6/9/2026