VYPR
Critical severityOSV Advisory· Published Dec 23, 2025· Updated Dec 24, 2025

LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs

CVE-2025-68664

Description

LangChain is a framework for building agents and LLM-powered applications. Prior to versions 0.3.81 and 1.2.5, a serialization injection vulnerability exists in LangChain's dumps() and dumpd() functions. The functions do not escape dictionaries with 'lc' keys when serializing free-form dictionaries. The 'lc' key is used internally by LangChain to mark serialized objects. When user-controlled data contains this key structure, it is treated as a legitimate LangChain object during deserialization rather than plain user data. This issue has been patched in versions 0.3.81 and 1.2.5.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
langchain-corePyPI
>= 1.0.0, < 1.2.51.2.5
langchain-corePyPI
< 0.3.810.3.81

Affected products

12

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.