Safety vulnerability ID: 77900
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Affected versions of this package are vulnerable to Server-Side Request Forgery (SSRF) due to a lack of proper URL validation in the RequestsToolkit component. The RequestsToolkit fails to enforce restrictions on target URLs, allowing requests to both remote internet addresses and local network addresses, leading to potential port scanning, access to local services, retrieval of cloud instance metadata, and interaction with internal network resources.
Latest version: 0.3.29
Community contributed LangChain integrations.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application