Unknown · Langchain4J-Aideepin · CVE-2025-21604
**Name of the Vulnerable Software and Affected Versions**
LangChain4j-AIDeepin versions prior to 3.5.0
**Description**
LangChain4j-AIDeepin is a Retrieval enhancement generation (RAG) project. Prior to version 3.5.0, it used MD5 to hash files, which may cause file upload conflicts.
**Recommendations**
For versions prior to 3.5.0, update to version 3.5.0 to resolve the issue. As a temporary workaround, consider avoiding the use of MD5 hashing for file uploads until the update is applied.