Third-party integrations for LangChain.js
93%
Total Score
67
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-27795 @langchain/community is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.0.0 - 1.1.17. | 0.0.0 - 1.1.17 | Medium |
CVE-2026-26019 @langchain/community is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.0.0 - 1.1.13. | 0.0.0 - 1.1.13 | Medium |
CVE-2024-7042 @langchain/community is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 0.0.0 - 0.3.3. | 0.0.0 - 0.3.3 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
zod Version ^3.25.76 || ^4 | — | — |
flat Version ^5.0.2 | — | — |
uuid Version ^14.0.0 | — | — |
js-yaml Version ^4.1.1 | — | — |
langsmith Version >=0.4.0 <1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant