CVE-2025-21604: Moyangzhan LANGCHAIN4J-Aideepin

Medium severity, CVSS 6.9. EPSS: 0.3% chance of exploitation in the next 30 days.

LangChain4j-AIDeepin is a Retrieval enhancement generation (RAG) project. Prior to 3.5.0, LangChain4j-AIDeepin uses MD5 to hash files, which may cause file upload conflicts. This issue is fixed in 3.5.0.

Affected products

  • Moyangzhan LANGCHAIN4J-Aideepin: before 3.5.0 (fixed in 3.5.0)

Published 2025-01-06. Last modified 2026-06-17.