CVE-2026-55443: LangChain is a framework for building agents and LLM-powered applications. Prior to 1.3.9, several LangChain components
LangChain framework has a vulnerability that allows disclosure of files outside the intended boundary when components receive path values from untrusted sources
