An issue in Harrison Chase langchain v.0.0.194 allows an attacker to execute arbitrary code via the python exec calls in the PALChain, affected functions include from_math_prompt and from_colored_object_prompt.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| langchain(PyPI) | 0 | 0.0.236 | N/A |
CVSS Metrics