Back

CRITICAL

An issue in Harrison Chase langchain v.0.0.194 allows an attacker to execute arbitrary code via the python exec calls in the PALChain, affected functions include from_math_prompt and from_colored_object_prompt

Published Aug 5, 2023

Description

An issue in Harrison Chase langchain v.0.0.194 allows an attacker to execute arbitrary code via the python exec calls in the PALChain, affected functions include from_math_prompt and from_colored_object_prompt.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 5, 2023
Updated Jul 9, 2026
Reserved Jun 21, 2023
CISA Vulnrichment
Updated Oct 17, 2024
NVD
Status Modified
Modified Jul 9, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner mitre
Published Aug 5, 2023
Updated Jul 9, 2026
Exploited since n/a
EUVD-2023-0112 GHSA-GWQQ-6VQ7-5J86