VDB
Sign up
HIGH7.5

PYSEC-2026-2193

Quick fix

PYSEC-2026-2193 — langchain-core: upgrade to the fixed version with the command below.

pip install --upgrade 'langchain-core>=1.2.22'

Details

LangChain is a framework for building agents and LLM-powered applications. Prior to version 1.2.22, multiple functions in langchain_core.prompts.loading read files from paths embedded in deserialized config dicts without validating against directory traversal or absolute path injection. When an application passes user-influenced prompt configurations to load_prompt() or load_prompt_from_config(), an attacker can read arbitrary files on the host filesystem, constrained only by file-extension checks (.txt for templates, .json/.yaml for examples). This issue has been patched in version 1.2.22.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/langchain-core
Introduced in: 0Fixed in: 1.2.22
Fixpip install --upgrade 'langchain-core>=1.2.22'

References