Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-1520
  • PyPI/langchain-text-splitters
LangChain Text Splitters is vulnerable to XML External Entity (XXE) attacks due to unsafe XSLT parsing 07 Jul
  • Fix available
  • Severity - 7.5 (High)
PYSEC-2026-77
  • PyPI/langchain-text-splitters
See record for full details 24 Apr
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-fv5p-p927-qmxr
  • PyPI/langchain-text-splitters
LangChain Text Splitters: HTMLHeaderTextSplitter.split_text_from_url SSRF Redirect Bypass 16 Apr
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-m42m-m8cr-8m58
  • PyPI/langchain-text-splitters
LangChain Text Splitters is vulnerable to XML External Entity (XXE) attacks due to unsafe XSLT parsing 06 Oct 2025
  • Fix available
  • Severity - 7.5 (High)