CVE-2025-68664 | langchain-ai langchain up to 0.3.80/1.2.4 dumps deserialization (GHSA-c67j-w6g6-q2cm / WID-SEC-2025-2936)
A vulnerability marked as critical has been reported in langchain-ai langchain up to 0.3.80/1.2.4. This vulnerability affects the function dumps. The manipulation leads to deserialization.
This vulnerability is documented as CVE-2025-68664. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.