What is CVE-2026-54249?
CVE-2026-54249 is an arbitrary file read vulnerability in the Pydantic AI framework, triggered via message history submitted to UI adapters like the Vercel AI adapter. It affects specific version ranges, and developers should immediately apply the security update.
Azərbaycanca: CVE-2026-54249, Pydantic AI çərçivəsində istifadəçi tarixçəsi vasitəsilə ixtiyari fayl oxuma (arbitrary file read) zəifliyidir. Müəyyən versiyalarda Vercel AI adapteri kimi UI adapterlərdən istifadə edən tətbiqlərə təsir edir. Tərtibatçılar dərhal təhlükəsizlik yeniləməsini tətbiq etməlidir.
Related CVEs
link basis: shared vendors: Pydantic AI, Vercel AI
FAQ1
Through which component is CVE-2026-54249 exploited?
CVE-2026-54249 is an arbitrary file read vulnerability in the Pydantic AI framework exploited via message history submitted to UI adapters like the Vercel AI adapter.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.