CVE-2025-68664 is a serialization injection vulnerability affecting LangChain and LangChain Core versions prior to 0.3.81 and 1.2.5. The vulnerability arises because the dumps() and dumpd() functions fail to properly escape dictionaries containing the internal 'lc' key when serializing free-form user data. This allows specially crafted user input to be misinterpreted as legitimate LangChain objects during deserialization. This vulnerability carries a CVSS score of 8.2 (HIGH), indicating a critical severity. It is a network-exploitable vulnerability with low attack complexity, requiring no user interaction. A successful exploit could lead to high confidentiality impact (data disclosure) and low integrity impact. While there is no evidence of active exploitation, nor publicly available exploit code in Metasploit, Nuclei, or ExploitDB, the vulnerability has garnered significant community attention with 16 mentions, including discussions on GitHub and Mastodon regarding its critical nature and potential for secret exposure.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.3.81CPE matchmatch criteria | cpe:2.3:a:langchain:langchain_core:*:*:*:*:*:python:*:* | ||
>= 1.0.0, < 1.2.5CPE matchmatch criteria | cpe:2.3:a:langchain:langchain_core:*:*:*:*:*:python:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.