2023-10-19 00:00:00
mitre
PUBLISHED
LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an external server to an internal server.