VYPR

rpm package

opensuse/python-langsmith&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/python-langsmith&distro=openSUSE%20Tumbleweed

Vulnerabilities (3)

  • CVE-2026-45134HigMay 27, 2026
    affected < 0.10.3-1.1fixed 0.10.3-1.1

    LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to LangSmith SDK Python 0.8.0 and JS/TS 0.6.0, the LangSmith SDK's prompt pull methods (pull_prompt / pull_prompt_commit in Python, pullPrompt / pullPromptCommit in JS/TS) fetch and deserialize

  • CVE-2026-41182MedApr 23, 2026
    affected < 0.10.3-1.1fixed 0.10.3-1.1

    LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to version 0.5.19 of the JavaScript SDK and version 0.7.31 of the Python SDK, the LangSmith SDK's output redaction controls (hideOutputs in JS, hide_outputs in Python) do not apply to streaming

  • CVE-2026-40190MedApr 10, 2026
    affected < 0.10.3-1.1fixed 0.10.3-1.1

    LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to 0.5.18, the LangSmith JavaScript/TypeScript SDK (langsmith) contains an incomplete prototype pollution fix in its internally vendored lodash set() utility. The baseAssignValue() function onl