peter bassill · operator
$ cve CVE-2025-68664 JSON

CVE-2025-68664 EXPLOIT

9.3
CRITICAL · CVSS 3.1 · EPSS 42.9% (pctl 99)

Patch early

A public exploit exists.

Description

LangChain is a framework for building agents and LLM-powered applications. Prior to versions 0.3.81 and 1.2.5, a serialization injection vulnerability exists in LangChain's dumps() and dumpd() functions. The functions do not escape dictionaries with 'lc' keys when serializing free-form dictionaries. The 'lc' key is used internally by LangChain to mark serialized objects. When user-controlled data contains this key structure, it is treated as a legitimate LangChain object during deserialization rather than plain user data. This issue has been patched in versions 0.3.81 and 1.2.5.

Scoring

CVSS9.3 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
EPSS42.93% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-502
On CISA KEVno
Public exploityes
Published2025-12-23
Last modified2026-06-17

Affected (1)

VendorProduct
langchainlangchain core

Public exploits

SourceTitleDate
exploit-dbLangChain Core 1.2.4 - SSTI/RCE2026-04-29

References

→ the Explorer  ·  watch your stack  ·  NVD