pydantic has 4 CVEs on record between 2021 and 2026. The median CVSS is 6.5 (medium). Most affected products: pydantic (2), pydantic_ai (2).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.5
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Worst active — by depth score
CVE-2026-25580High· 8.6Pydantic AI is a Python agent framework for building applications and workflows with Generative AI47CVE-2026-25640High· 7.1Pydantic AI is a Python agent framework for building applications and workflows with Generative AI39CVE-2024-3772Medium· 5.9Pydantic regular expression denial of service33CVE-2021-29510Low· 3.3Use of "infinity" as an input to datetime and date fields causes infinite loop in pydantic18
pydantic vulnerabilities
CVEs affecting pydantic, newest first. Open any entry for full detail, references, and exploit status.
4 CVEsRSS
CVE-2026-25580High· 8.6Pydantic AI is a Python agent framework for building applications and workflows with Generative AI
Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. From 0.0.26 to before 1.56.0, aServer-Side Request Forgery (SSRF) vulnerability exists in Pydantic AI's URL download functionality. When …
CVE-2026-25640High· 7.1Pydantic AI is a Python agent framework for building applications and workflows with Generative AI
Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. From 1.34.0 to before 1.51.0, a path traversal vulnerability in the Pydantic AI web UI allows an attacker to serve arbitrary JavaScript …
CVE-2024-3772Medium· 5.9Pydantic regular expression denial of service
Pydantic regular expression denial of service
CVE-2021-29510Low· 3.3Use of "infinity" as an input to datetime and date fields causes infinite loop in pydantic
Use of "infinity" as an input to datetime and date fields causes infinite loop in pydantic