LangChain: RediSearch Filter Injection via Unescaped Tag/Text Values
@langchain/redis did not properly escape values used to construct structured RediSearch TAG and TEXT filters. An application that passes attacker-controlled values into these filters could allow the attacker to alter the resulting search query.