Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-54249 |
|
SSRF (Server-Side Request Forgery) in pydantic-ai-slim (CVE-2026-54249)
SSRF in pydantic-ai-slim (CVE-2026-54249). Confidential information can be exposed externally. Exploitable via ``UploadedFile``. Mitigation: upgrade to `2.0.0b6` or later.
|
| CVE-2026-65975 |
|
Authorization Flaw in pydantic (CVE-2026-65975)
vulnerability in pydantic (CVE-2026-65975). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48782 |
|
SSRF (Server-Side Request Forgery) in pydantic-ai-slim (CVE-2026-48782)
SSRF in pydantic-ai-slim (CVE-2026-48782). Confidential information can be exposed externally. Exploitable via ``FileUrl``. Mitigation: upgrade to `2.0.0b3` or later.
|
| CVE-2026-46678 |
|
SSRF (Server-Side Request Forgery) in pydantic-ai (CVE-2026-46678)
SSRF in pydantic-ai (CVE-2026-46678). Confidential information can be exposed externally. Exploitable via ``FileUrl``. Mitigation: upgrade to `1.99.0` or later.
|
| CVE-2026-25580 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-25580)
SSRF in ssrf (CVE-2026-25580). Confidential information can be exposed externally. Mitigation: upgrade to `1.56.0` or later.
|
| CVE-2026-25640 |
|
Path Traversal in path-traversal (CVE-2026-25640)
path traversal in path-traversal (CVE-2026-25640). Confidential information can be exposed externally. Mitigation: upgrade to `1.51.0` or later.
|