| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-3gh4-cghq-f8v4 | Pydantic AI OpenTelemetry instrumentation: retry prompt content is not redacted when `include_content=False` |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 08 Oct 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pydantic
Pydantic pydantic-ai |
|
| Vendors & Products |
Pydantic
Pydantic pydantic-ai |
Thu, 08 Oct 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Oct 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. From 0.3.4 until 1.107.4 and 2.27.1, OpenTelemetry instrumentation configured with InstrumentationSettings(include_content=False) can export retry prompts outside tool calls in gen_ai.input.messages and pydantic_ai.all_messages. Agents using NativeOutput, PromptedOutput, or output validators on text output can therefore disclose validation feedback, including invalid model values quoted by that feedback, to readers of the telemetry backend. Tool-call retries and deployments that do not use include_content=False are not affected by this specific path. This issue is fixed in versions 1.107.4 and 2.27.1. | |
| Title | Pydantic AI OpenTelemetry instrumentation: retry prompt content is not redacted when `include_content=False` | |
| Weaknesses | CWE-212 CWE-532 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-10-08T17:14:30.659Z
Reserved: 2026-10-07T15:53:23.586Z
Link: CVE-2026-107293
Updated: 2026-10-08T17:14:25.899Z
Status : Awaiting Analysis
Published: 2026-10-08T17:17:14.933
Modified: 2026-10-08T20:35:31.200
Link: CVE-2026-107293
No data.
OpenCVE Enrichment
Updated: 2026-10-08T21:15:13Z
Github GHSA