CVE-2023-29374

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
05/04/2023
Last modified:
12/02/2025

Description

In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code via the Python exec method.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:langchain:langchain:*:*:*:*:*:*:*:* 0.0.131 (including)