A vulnerability, which was classified as problematic, was found in langchain-ai langchain up to 0.3.82/1.2.27. Impacted is an unknown function. Executing a manipulation can lead to improper neutralization of special elements used in a template engine.

This vulnerability is registered as CVE-2026-40087. It is possible to launch the attack remotely. No exploit is available.

You should upgrade the affected component.