Improper Neutralization of Special Elements Used in a Template Engine in LangChain - CVE-2025-65106

 

Improper Neutralization of Special Elements Used in a Template Engine in LangChain - CVE-2025-65106

Published: February 16, 2026


Vulnerability identifier: #VU122961
CSH Severity: High
CVSS v4: 8.3 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-65106
CWE-ID: CWE-1336
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain access to potentially sensitive information.

The vulnerability exists due to template injection vulnerability in LangChain's prompt template system. A remote attacker can access Python object internals through template syntax.


Affected software

LangChain
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data
watsonx Code Assistant On Prem
watsonx.data integration

How to mitigate CVE-2025-65106

Install updates from vendor's website.

LangChain - addressed in versions 0.3.80, 1.0.7
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data - update to 5.3.1
watsonx Code Assistant On Prem - update to 5.3.0
watsonx.data integration - update to 5.3.1

External References

Related Security Bulletins