Critical vulnerability in LangChain – CVE-2025-68664
1–10 of 93 posts
Re: Critical vulnerability in LangChain – CVE-2025-68664
#2Re: Critical vulnerability in LangChain – CVE-2025-68664
#3I would rather just read the original prompt that went in instead of verbosified "it's not X, it's **Y**!" slop.
Re: Critical vulnerability in LangChain – CVE-2025-68664
#4WHY on earth did the author of the CVE feel the need to feed the description text through an LLm? I get dizzy when I see this AI slop style. I would rather just read the original prompt that went in instead of verbosified "it's not X, it's **Y**!" slop.
Not everyone speaks English natively.
Not everyone has taste when it comes to written English.
Re: Critical vulnerability in LangChain – CVE-2025-68664
#5WHY on earth did the author of the CVE feel the need to feed the description text through an LLm? I get dizzy when I see this AI slop style. I would rather just read the original prompt that went in instead of verbosified "it's not X, it's **Y**!" slop.
> WHY on earth did the author of the CVE feel the need to feed the description text through an LLm? Not everyone speaks English natively. Not everyone has taste when it comes to written English.
Re: Critical vulnerability in LangChain – CVE-2025-68664
#6Re: Critical vulnerability in LangChain – CVE-2025-68664
#7The best part about this is that you know the type of people/companies using langchain are likely the type that are not going to patch this in a timely manner.
Re: Critical vulnerability in LangChain – CVE-2025-68664
#8Re: Critical vulnerability in LangChain – CVE-2025-68664
#9WHY on earth did the author of the CVE feel the need to feed the description text through an LLm? I get dizzy when I see this AI slop style. I would rather just read the original prompt that went in instead of verbosified "it's not X, it's **Y**!" slop.
Re: Critical vulnerability in LangChain – CVE-2025-68664
#10The best part about this is that you know the type of people/companies using langchain are likely the type that are not going to patch this in a timely manner.
Can you elaborate? Fairly new to langchain, but didn't realize it had any sort of stereotypical type of user.
Overall I felt like it solves a problem doesn't exist, and I've been happily sending direct API calls for years to LLMs without issues.