๐ŸŽ„๐Ÿคถ Oh, look! It's the #LangGrinch, stealing secrets like they're going out of style! Someone better tell Cyata that their "Control Plane for Agentic Identity" was just hijacked by the Christmas spirit of security negligence. ๐ŸŽ๐Ÿ”“๐Ÿ’ฅ
https://cyata.ai/blog/langgrinch-langchain-core-cve-2025-68664/ #CyberSecurity #ChristmasSpirit #SecretHacks #AgenticIdentity #HackerNews #ngated
All I Want for Christmas Is Your Secrets: LangGrinch hits LangChain Core (CVE-2025-68664) - Cyata | The Control Plane for Agentic Identity

Cyata discloses LangGrinch (CVE-2025-68664), a critical LangChain Core serialization injection bug where untrusted, LLM-influenced metadata can be rehydrated as objects, enabling secret leaks and unsafe instantiation. Patch guidance included.

Cyata | The Control Plane for Agentic Identity