Get the latest tech news

Critical vulnerability in LangChain – CVE-2025-68664


Cyata discloses LangGrinch (CVE-2025-68664), a critical LangChain Core serialization injection bug where untrusted, LLM-influenced metadata can be rehydrated as objects, enabling secret leaks and unsafe instantiation. Patch guidance included.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of secrets

secrets

Photo of Xmas

Xmas

Photo of cve-2025

cve-2025

Related news:

News photo

Former intelligence chief and son convicted for illegal gambling and state secrets charges in Albania

News photo

Show HN: Local Privacy Firewall-blocks PII and secrets before ChatGPT sees them

News photo

Climbing the career ladder? 5 secrets to building resilience from leaders who were once in your shoes