PT-2025-26643 · Langchain Ai · Langchain

Published

2025-06-23

·

Updated

2025-07-16

·

CVE-2025-2828

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: langchain-ai/langchain version 0.0.27
Description: A Server-Side Request Forgery (SSRF) vulnerability exists in the RequestsToolkit component of the langchain-community package. This vulnerability occurs because the toolkit does not enforce restrictions on requests to remote internet addresses, allowing it to also access local addresses. As a result, an attacker could exploit this flaw to perform port scans, access local services, retrieve instance metadata from cloud environments, and interact with servers on the local network.
Recommendations: Update to version 0.0.28 to resolve the issue. As a temporary workaround, consider restricting access to the RequestsToolkit component until the update is applied. Avoid using the RequestsToolkit to access local addresses until the issue is resolved.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

BDU:2025-09014
CVE-2025-2828
GHSA-H5GC-RM8J-5GPR
PYSEC-2025-70

Affected Products

Langchain