pydantic-ai-slim is vulnerable to Improper Removal of Sensitive Information Before Storage or Transfer
15
Low Risk
Affected versions of pydantic-ai-slim may inadvertently expose sensitive information to observability platforms. This includes user data, proprietary prompts, tool call arguments, and model responses captured in OpenTelemetry events. To address this, patched versions are able prevent sensitive content from being included in telemetry data, enabling secure monitoring of agent behavior and performance without compromising user privacy or proprietary information.
You are affected if you are using a vulnerable version of the package.
pydantic-ai-slim is vulnerable to Improper Removal of Sensitive Information Before Storage or Transfer in versions 0.0.1 - 0.3.3.
Upgrade pydantic-ai-slim to the patch version and set include_content=False or make sure no OpenTelemetry events are sent in your production environment.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant