Database/AI/ML frameworks & serving
LangChain: Directory traversal via the template path parameter
CVSS 8.1CVE-2024-28088AI/ML frameworks & servingcurated
Impact
Directory traversal via the template path parameter
Who can reach it
Attacker-controlled final path segment
What to do
Upgrade past 0.1.10
References
Related entries
- JupyterHub: Malicious subdomain tricks a userCVE-2024-28233 · JupyterHubHigh
- LiteLLM: Arbitrary file deletion via `/audio/transcriptions`CVE-2024-4888 · LiteLLMHigh
- MLflow (REST API): DNS rebinding — no Origin header validationCVE-2025-14279 · MLflow (REST API)High
- NVIDIA Triton (Python backend): Out-of-bounds write in the Python backendCVE-2025-23318 · NVIDIA Triton (Python backend)High
- NVIDIA Triton (Python backend shared memory): Out-of-bounds write in the Python backendCVE-2025-23319 · NVIDIA Triton (Python backend shared memory)High
- LibreChat: agent Actions have no destination restrictions by default, reaching internal services via SSRFCVE-2025-69222 · LibreChat (agent Actions feature, outbound request allowlist)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.