CVE-2026-34070 is a high-severity directory traversal and absolute path injection vulnerability affecting LangChain versions prior to 1.2.22. It allows an unauthenticated, remote attacker to read arbitrary files on the host filesystem by providing malicious prompt configurations to `load_prompt()` or `load_prompt_from_config()`. Rated 7.5 CVSS, this vulnerability has low attack complexity and requires no user interaction, leading to a high confidentiality impact. While there is community discussion and media coverage, no active exploitation or public exploit code has been identified.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 1.2.22CPE matchmatch criteria | cpe:2.3:a:langchain:langchain_core:*:*:*:*:*:python:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.