CVE-2026-55443: LangChain is a framework for building agents and LLM-powered applications. Prior to 1.3.9, several LangChain components that resolve filesystem paths or expand search patterns do not consistently c...
Added to the CISA Known Exploited Vulnerabilities catalog on 22 Jun 2026. Vendor: AI/ML. Product: LLM. CVSS score: 5.1.
LangChain is a framework for building agents and LLM-powered applications. Prior to 1.3.9, several LangChain components that resolve filesystem paths or expand search patterns do not consistently confine the resolved path to the intended root directory. Affected behaviors include: a file-search a...
Required action: Review and patch if applicable to your AI infrastructure.