Skip to content

Conversation

@renovate-bot
Copy link
Contributor

@renovate-bot renovate-bot commented May 28, 2025

This PR contains the following updates:

Package Change Age Confidence
langchain-community (changelog) ==0.2.12 -> ==0.2.19 age confidence

GitHub Vulnerability Alerts

CVE-2024-8309

A vulnerability in the GraphCypherQAChain class of langchain-ai/langchain version 0.2.5 allows for SQL injection through prompt injection. This vulnerability can lead to unauthorized data manipulation, data exfiltration, denial of service (DoS) by deleting all data, breaches in multi-tenant security environments, and data integrity issues. Attackers can create, update, or delete nodes and relationships without proper authorization, extract sensitive data, disrupt services, access data across different tenants, and compromise the integrity of the database.


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Never, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate-bot renovate-bot requested review from a team as code owners May 28, 2025 09:12
@dpebot
Copy link
Collaborator

dpebot commented May 28, 2025

/gcbrun

@product-auto-label product-auto-label bot added the api: redis Issues related to the googleapis/langchain-google-memorystore-redis-python API. label May 28, 2025
@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 4f326ff to ad142af Compare May 28, 2025 23:04
@dpebot
Copy link
Collaborator

dpebot commented May 28, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from ad142af to 926dcc4 Compare May 29, 2025 05:15
@dpebot
Copy link
Collaborator

dpebot commented May 29, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 926dcc4 to 2445254 Compare May 29, 2025 13:23
@dpebot
Copy link
Collaborator

dpebot commented May 29, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 2445254 to 4e1e101 Compare May 29, 2025 23:30
@dpebot
Copy link
Collaborator

dpebot commented May 29, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 4e1e101 to 7281f40 Compare May 30, 2025 06:08
@dpebot
Copy link
Collaborator

dpebot commented May 30, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 7281f40 to 1656901 Compare May 30, 2025 18:37
@dpebot
Copy link
Collaborator

dpebot commented May 30, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 1656901 to 9f56426 Compare May 31, 2025 01:40
@dpebot
Copy link
Collaborator

dpebot commented May 31, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 9f56426 to 638da1e Compare May 31, 2025 11:23
@dpebot
Copy link
Collaborator

dpebot commented May 31, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 638da1e to 1d36c35 Compare May 31, 2025 18:20
@dpebot
Copy link
Collaborator

dpebot commented May 31, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 1d36c35 to 60cef87 Compare June 1, 2025 01:37
@dpebot
Copy link
Collaborator

dpebot commented Jun 1, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 60cef87 to 42f071b Compare June 1, 2025 09:47
@dpebot
Copy link
Collaborator

dpebot commented Jun 1, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 42f071b to b08b378 Compare June 1, 2025 16:33
@dpebot
Copy link
Collaborator

dpebot commented Jun 1, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from b08b378 to 2803e56 Compare June 2, 2025 00:31
@dpebot
Copy link
Collaborator

dpebot commented Aug 23, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 12002a2 to 70ac379 Compare August 24, 2025 04:30
@dpebot
Copy link
Collaborator

dpebot commented Aug 24, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 70ac379 to 7eb9b0e Compare August 24, 2025 16:57
@dpebot
Copy link
Collaborator

dpebot commented Aug 24, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 7eb9b0e to b6ed7be Compare August 25, 2025 01:52
@dpebot
Copy link
Collaborator

dpebot commented Aug 25, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from b6ed7be to dbcb183 Compare August 25, 2025 09:55
@dpebot
Copy link
Collaborator

dpebot commented Aug 25, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from dbcb183 to 49de1a2 Compare August 25, 2025 17:42
@dpebot
Copy link
Collaborator

dpebot commented Aug 25, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 49de1a2 to 6e78c79 Compare August 26, 2025 01:12
@dpebot
Copy link
Collaborator

dpebot commented Aug 26, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 6e78c79 to 339cddc Compare August 26, 2025 12:07
@dpebot
Copy link
Collaborator

dpebot commented Aug 26, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 339cddc to b394d7b Compare August 26, 2025 23:03
@dpebot
Copy link
Collaborator

dpebot commented Aug 26, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from b394d7b to c151fbe Compare August 27, 2025 05:59
@dpebot
Copy link
Collaborator

dpebot commented Aug 27, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from c151fbe to 7c20842 Compare August 27, 2025 19:10
@dpebot
Copy link
Collaborator

dpebot commented Aug 27, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 7c20842 to fdaae79 Compare August 28, 2025 01:00
@dpebot
Copy link
Collaborator

dpebot commented Aug 28, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from fdaae79 to a17b027 Compare August 28, 2025 23:53
@dpebot
Copy link
Collaborator

dpebot commented Aug 28, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from a17b027 to 7d0a614 Compare August 31, 2025 14:09
@dpebot
Copy link
Collaborator

dpebot commented Aug 31, 2025

/gcbrun

@renovate-bot renovate-bot force-pushed the renovate/pypi-langchain-community-vulnerability branch from 7d0a614 to 91aad41 Compare August 31, 2025 22:04
@dpebot
Copy link
Collaborator

dpebot commented Aug 31, 2025

/gcbrun

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

api: redis Issues related to the googleapis/langchain-google-memorystore-redis-python API.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants