National Cyber Warfare Foundation (NCWF)

LangSmith Bug Could Expose OpenAI Keys and User Data via Malicious Agents


0 user ratings
2025-06-17 17:49:01
milo
Blue Team (CND) , Breach
Cybersecurity researchers have disclosed a now-patched security flaw in LangChain's LangSmith platform that could be exploited to capture sensitive data, including API keys and user prompts.
The vulnerability, which carries a CVSS score of 8.8 out of a maximum of 10.0, has been codenamed AgentSmith by Noma Security.
LangSmith is an observability and evaluation platform that allows users to



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/06/langchain-langsmith-bug-let-hackers.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)
Breach



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.