PkgRadar

PyPI · pypi.org

langchain

Py Runtime Subprocess: subprocess call — process spawning.

Why PkgRadar flagged 1.3.2

SeveritySignalEvidence
mediumPy Runtime Subprocesssubprocess call — process spawning. · langchain-1.3.2/langchain/agents/middleware/_execution.py
mediumPy Runtime Subprocesssubprocess call — process spawning. · langchain-1.3.2/langchain/agents/middleware/file_search.py

Scanned versions

VersionVerdictScoreScanned (UTC)
1.3.9Low risk02026-06-12
1.3.8Low risk02026-06-12
1.3.7Low risk02026-06-10
1.3.6Low risk02026-06-10
1.3.5Low risk02026-06-10
1.3.4Low risk02026-06-02
1.3.3Low risk02026-06-02
1.3.2Review202026-05-26

Block this in CI

PkgRadar gates langchain (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi langchain==1.3.2