Langbot is a focused chatbot or conversational-AI product with a modestly represented vulnerability footprint centered on web-application input handling. The durable signal from observed disclosures points to cross-site scripting weaknesses, which reflects the browser-based or web-embedded nature of the product and its exposure to untrusted user input. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Langbot over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-28509MEDIUM LangBot is a global IM bot platform designed for LLMs. Prior to version 4.8.7, LangBot’s web UI renders user-supplied raw HTML using rehypeRaw, which can lead to a cross-site scrip | Mar 6, 2026 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Langbot.
Media articles that mention a CVE ID that affects a product developed by Langbot — matched by CVE ID, not by vendor name.