An issue in langchain langchain-ai v.0.0.232 and before allows a remote attacker to execute arbitrary code via a crafted script to the PythonAstREPLTool._run component.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-39659.json"