Launch Week Day 1: Announcing Security Design Review
CRITICAL 9.8 PyPI

Langchain SQL Injection vulnerability

GHSA-8h5w-f6q9-wg35 · CVE-2023-32785

Published · Modified

Description

In Langchain before 0.0.247, prompt injection allows execution of arbitrary code against the SQL service provided by the chain.

Ready to move

Start Securing

Free, no credit card | First findings in minutes