Pipecat is a narrowly scoped conversational AI framework and orchestration platform with a minimal disclosed vulnerability footprint centered on its core product. The durable signal reflects its role as a data-handling and serialization layer, with observed weaknesses clustering around untrusted deserialization and path-traversal conditions that are typical of systems processing external input and file operations. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pipecat over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-62373CRITICAL Pipecat is an open-source Python framework for building real-time voice and multimodal conversational agents. Versions 0.0.41 through 0.0.93 have a vulnerability in `LivekitFrameSe | Apr 23, 2026 | 9.8 | 33 | NO | NO |
CVE-2026-54695MEDIUM Pipecat is an open-source Python framework for building real-time voice and multimodal conversational agents. Prior to 1.4.0, the pipecat development runner registers a /ws WebSock | Jul 9, 2026 | 6.5 | 29 | NO | NO |
CVE-2026-44716HIGH Pipecat is an open-source Python framework for building real-time voice and multimodal conversational agents. From version 0.0.90 to before version 1.2.0, a path traversal vulnerab | Jun 9, 2026 | 7.5 | 29 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pipecat.
Media articles that mention a CVE ID that affects a product developed by Pipecat — matched by CVE ID, not by vendor name.