CVE-2026-28277 | langchain-ai langgraph up to 1.0.9 SQLite Checkpoint deserialization (EUVD-2026-9860)
A vulnerability classified as problematic was found in langchain-ai langgraph up to 1.0.9. Impacted is an unknown function of the component SQLite Checkpoint. Such manipulation leads to deserialization.
This vulnerability is traded as CVE-2026-28277. Access to the local network is required for this attack to succeed. There is no exploit available.