Topic

#symlink-bypass

1 article exploring symlink-bypass. Expert insights and analysis from our editorial team.

Showing 1–1 of 1 articles

Articles

Newest first
Security

LangChain CVE-2026-34070: load_prompt Path Traversal Patched in 1.2.22, Symlink Bypass Left Open

LangChain CVE-2026-34070 (CVSS 7.5) enables arbitrary file reads via load_prompt traversal; langchain-core 1.2.22 patches direct traversal but leaves a symlink bypass open.