MX3 Dev[verified]@Mx3DevPatch
The message advises upgrading @langchain/community to apply a patch that addresses CVE‑2026‑27795 and CVE‑2026‑26019.
CVE@CVEnewDisclosure
CVE‑2026‑27795 is a redirect‑based SSRF bypass in LangChain before v1.1.8, with no PoC, exploit, or patch mentioned.
cvereports@_cvereportsDisclosure
A new SSRF bypass vulnerability was identified in LangChain's RecursiveUrlLoader, indicating a potential security flaw in the @langchain/community package.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A new SSRF vulnerability (CVE-2026-27795) affecting LangChain's RecursiveUrlLoader has been disclosed, with no PoC, exploit, patch, or active exploitation details provided.