AI Score
Confidence
Low
EPSS
Percentile
41.3%
SSVC
Exploitation
none
Automatable
no
Technical Impact
total
LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an external server to an internal server.