9 Total advisories
9 Vulnerabilities
0 Malware
Dependency scanning
Check whether langchain-community is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
CRITICAL 10.0
CVE-2025-2828
CVE-2025-2828
CRITICAL 9.8
CVE-2024-8309
CVE-2024-8309
CRITICAL 9.8
CVE-2024-2057
CVE-2024-2057
HIGH 7.5
CVE-2025-6984
Langchain Community Vulnerable to XML External Entity (XXE) Attacks
MEDIUM 5.2
CVE-2024-5998
LangChain pickle deserialization of untrusted data
HIGH 8.4
CVE-2025-2828
LangChain Community SSRF vulnerability exists in RequestsToolkit component
MEDIUM 4.9
CVE-2024-8309
Langchain SQL Injection vulnerability
MEDIUM 4.2
CVE-2024-2965
Denial of service in langchain-community
MEDIUM 4.8
CVE-2024-3095
Server-Side Request Forgery in langchain-community.retrievers.web_research.WebResearchRetriever
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes