CRITICAL10.0CVE-2026-54769Langroid: Sandbox Escape to Remote Code Execution via Incomplete `eval()` Mitigation in TableChatAgent from 0, < 0.65.2
CRITICAL10.0CVE-2026-54769Langroid: Sandbox Escape to Remote Code Execution via Incomplete `eval()` Mitigation in TableChatAgent from 0, < 0.65.2
CRITICAL9.8CVE-2026-25879Langroid has Prompt to SQL Injection, Leading to RCE from 0, < 0.63.0
CRITICAL9.8Langroid has Prompt to SQL Injection, Leading to RCE
from 0, < 0.63.0
CRITICAL9.8Langroid has a Code Injection vulnerability in TableChatAgent
from 0, < 0.53.15
CRITICAL9.8Langroid has a Code Injection vulnerability in TableChatAgent
from 0, < 0.53.15
HIGH8.1Langroid: handle_message() executes user-supplied tool JSON without sender verification
from 0, < 0.65.3
HIGH8.1Langroid: handle_message() executes user-supplied tool JSON without sender verification
from 0, < 0.65.3
HIGH7.1Langroid: Path traversal in the file tools allows read/write outside configured current directory
from 0, < 0.64.0
HIGH7.1Langroid: Path traversal in the file tools allows read/write outside configured current directory
from 0, < 0.64.0
—Langroid: Neo4jChatAgent executes LLM-generated Cypher without validation (prompt-to-Cypher injection; config-conditional RCE), mirroring the SQLChatAgent bug fixed in CVE-2026-25879
from 0, < 0.65.5
—Langroid: Neo4jChatAgent executes LLM-generated Cypher without validation (prompt-to-Cypher injection; config-conditional RCE), mirroring the SQLChatAgent bug fixed in CVE-2026-25879
from 0, < 0.65.5
—Langroid: SQLChatAgent dangerous-function blocklist can be bypassed with quoted or schema-qualified pg_read_file calls
from 0, < 0.65.1
—Langroid: SQLChatAgent dangerous-function blocklist can be bypassed with quoted or schema-qualified pg_read_file calls
from 0, < 0.65.1
—Langroid: SQLChatAgent _validate_query blocklist misses pg_read_file family enabling arbitrary file read
from 0, < 0.64.0
—Langroid: SQLChatAgent _validate_query blocklist misses pg_read_file family enabling arbitrary file read
from 0, < 0.64.0
—Langroid has WAF Bypass Leading to RCE in TableChatAgent
from 0, < 0.59.32
—Langroid has a Code Injection vulnerability in LanceDocChatAgent through vector_store
from 0, < 0.53.15
—Langroid has a Code Injection vulnerability in LanceDocChatAgent through vector_store
from 0, < 0.53.15
—Langroid Allows XXE Injection via XMLToolMessage
from 0, < 0.53.4
—Langroid Allows XXE Injection via XMLToolMessage
from 0, < 0.53.4