CVE-2023-39631 Information

Description

An issue in LanChain-ai Langchain v.0.0.245 allows a remote attacker to execute arbitrary code via the evaluate function in the numexpr library.

Reference

https://github.com/pydata/numexpr/issues/442 https://github.com/langchain-ai/langchain/issues/8363

Share on: