Junglewise Threat Intelligence

CVE-2023-36281: PYSEC-2023-151 - An issue in langchain v.0.0.171 allows a remote attacker to execute arbitrary code via the via the a json file to the load_prompt parameter.

CVE-2023-36281 · Severity: low · CVSS 3.1 · Published 2023-08-22

Technologies: langchain (PyPI). Vendors: PyPI.

Executive brief

An issue in langchain v.0.0.171 allows a remote attacker to execute arbitrary code via the via the a json file to the load_prompt parameter.

Affected products

  • PyPI langchain

Related threats