Record summary

CVE-2025-68665 has a selected CVSS score of 8.6 (high).

Description

LangChain is a framework for building LLM-powered applications. Prior to @langchain/core versions 0.3.80 and 1.1.8, and prior to langchain versions 0.3.37 and 1.2.3, a serialization injection vulnerability exists in LangChain JS's toJSON() method (and subsequently when string-ifying objects using JSON.stringify(). The method did not escape objects with 'lc' keys when serializing free-form data in kwargs. The 'lc' key is used internally by LangChain to mark serialized objects. When user-controlled data contains this key structure, it is treated as a legitimate LangChain object during deserialization rather than plain user data. This issue has been patched in @langchain/core versions 0.3.80 and 1.1.8, and langchain versions 0.3.37 and 1.2.3

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 24, 2025 · Source: CVE List

Affected products and versions

3
ProductSourceVersion rangeStatus
CVE List@langchain/core >= 1.0.0, < 1.1.8affected
@langchain/core < 0.3.80affected
langchain >= 1.0.0, < 1.2.3affected
langchain < 0.3.37affected
GitHub Advisory1.0.0 to < 1.1.8 · Fixed in 1.1.8affected
Before 0.3.80 · Fixed in 0.3.80affected
GitHub Advisory1.0.0 to < 1.2.3 · Fixed in 1.2.3affected
Before 0.3.37 · Fixed in 0.3.37affected

References

6