langchain-ai v0.3.51 was discovered to contain an...
Critical severity
Unreviewed
Published
Jul 29, 2025
to the GitHub Advisory Database
•
Updated Aug 4, 2025
Description
Published by the National Vulnerability Database
Jul 29, 2025
Published to the GitHub Advisory Database
Jul 29, 2025
Last updated
Aug 4, 2025
langchain-ai v0.3.51 was discovered to contain an indirect prompt injection vulnerability in the GmailToolkit component. This vulnerability allows attackers to execute arbitrary code and compromise the application via a crafted email message.
References