cbcvebase.

Langbot-App Langbot vulnerabilities

5 known vulnerabilities affecting langbot-app/langbot.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2026-54449P2HIGHCVSS 8.8≤ 4.10.72026-08-20
CVE-2026-54449 [HIGH] CWE-77 CVE-2026-54449: LangBot is a global IM bot platform designed for LLMs. In version 4.10.7 and earlier, any authentica LangBot is a global IM bot platform designed for LLMs. In version 4.10.7 and earlier, any authenticated user can add or change an STDIO MCP server configuration without an adequate authorization boundary. In src/langbot/pkg/provider/tools/loaders/mcp.py, StdioServerParameters accepts the configured command and arguments and starts a server-side subproc
nvd
CVE-2026-90562P2HIGHCVSS 8.1≥ 4.0.8.1, < 4.10.112026-09-13
CVE-2026-90562 [HIGH] CWE-331 CVE-2026-90562: LangBot before 4.10.11 generates password recovery keys with only 24 bits of entropy and applies no LangBot before 4.10.11 generates password recovery keys with only 24 bits of entropy and applies no rate limiting to the unauthenticated reset-password endpoint. Remote attackers knowing the administrator email can exhaust the keyspace through concurrent requests to reset the admin password and gain account access.
nvd
CVE-2026-90938P3HIGHCVSS 8.6≤ 0.4.172026-09-14
CVE-2026-90938 [HIGH] CWE-306 CVE-2026-90938: LangBot's plugin runtime (pip package langbot_plugin) through 0.4.17 starts a debug WebSocket server LangBot's plugin runtime (pip package langbot_plugin) through 0.4.17 starts a debug WebSocket server on 0.0.0.0:5401 (/plugin/ws) whose authentication is gated on plugin_debug_key, which defaults to an empty string and is never set by the upstream repository, Docker image, or docker-compose (which additionally publishes port 5401 to the host); the key
nvd
CVE-2025-59835P3HIGHCVSS 8.6v>= 4.1.0, < 4.3.52025-10-02
CVE-2025-59835 [HIGH] CWE-23 CVE-2025-59835: LangBot is a global IM bot platform designed for LLMs. In versions 4.1.0 up to but not including 4.3 LangBot is a global IM bot platform designed for LLMs. In versions 4.1.0 up to but not including 4.3.5, authorized attackers can exploit the /api/v1/files/documents interface to perform arbitrary file uploads. Since this interface does not strictly restrict the storage directory of files on the server, it is possible to upload dangerous files to specif
nvd
CVE-2026-28509P4MEDIUMCVSS 5.4fixed in 4.8.72026-03-06
CVE-2026-28509 [MEDIUM] CWE-79 CVE-2026-28509: LangBot is a global IM bot platform designed for LLMs. Prior to version 4.8.7, LangBot’s web UI rend LangBot is a global IM bot platform designed for LLMs. Prior to version 4.8.7, LangBot’s web UI renders user-supplied raw HTML using rehypeRaw, which can lead to a cross-site scripting (XSS) vulnerability. This issue has been patched in version 4.8.7.
nvd