{"data":{"id":"37a3eab1-1512-4673-9015-f5794666947b","title":"CVE-2026-107286: Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. From 2.10.0 until…","summary":"Pydantic AI versions 2.10.0 through 2.53.0 have a flaw in streamed requests made through ConcurrencyLimitedModel or limit_model_concurrency. Because anyio.CapacityLimiter ties an acquired slot to the borrowing task while streaming cleanup can run in a different task, early termination, cancellation, consumer exceptions, or complete stream_text() consumption with debounce_by=0.1 can leave shared concurrency slots occupied. Later requests on the long-lived limiter can then be blocked, causing a denial of service. Agent-level max_concurrency and non-streaming model requests are not affected.","solution":"Fixed in version 2.53.0.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-107286","publishedAt":"2026-10-08T15:17:40.753Z","cveId":"CVE-2026-107286","cweIds":["CWE-772"],"cvssScore":"7.5","cvssSeverity":"high","severity":"high","attackType":["denial_of_service"],"issueType":"vulnerability","affectedPackages":["pydantic-ai@>= 2.10.0, < 2.53.0 (fixed: 2.53.0)","pydantic-ai-slim@>= 2.10.0, < 2.53.0 (fixed: 2.53.0)"],"affectedPackageNames":["pydantic-ai","pydantic-ai-slim"],"affectedVendors":[],"affectedVendorsRaw":["Pydantic AI"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":"Pydantic AI streamed requests leak concurrency slots, causing denial of service","headlinePromptVersion":"h1","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"network","attackComplexity":"low","privilegesRequired":"none","userInteraction":"none","exploitMaturity":"unknown","epssScore":0.0045,"epssCheckedAt":"2026-10-10T03:00:40.088Z","kevDateAdded":null,"advisoryAliases":["GHSA-6fqq-452j-qhrp"],"affectedPackagesSource":"ghsa","affectedPackagesCheckedAt":"2026-10-10T03:42:35.444Z","patchAvailable":true,"disclosureDate":"2026-10-08T15:17:40.753Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["availability"],"aiComponentTargeted":"framework","llmSpecific":false,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":null}}