Langsmith 0.3.79 Has 5 CVEs. Here's What Actually Breaks. (opens in new tab)
Langsmith 0.3.79 Has 5 CVEs. Here's What Actually Breaks. You upgraded LangSmith to 0.3.79. Now your security scanner screams: 5 vulnerabilities. Highest severity: 9.8. Your first instinct: panic-upgrade. Your second: ignore it because "it's just the client SDK." Both are wrong. Here's why. The Problem LangSmith is your LLM observability layer. It sends traces, logs, and evaluation data from your agents to LangSmith's platform. That 0.3.79.tgz tarball? It pulls in dependencies with known issu...
Read the original article