CVE-2026-84381 | Pydantic HTTPX2/httpcore2 up to 2.9.1 SOCKS Proxy socks_proxy.py Client.websocket/AsyncClient.websocket certificate validation

SecurityVulns

A vulnerability was found in Pydantic HTTPX2 and httpcore2 up to 2.9.1. It has been rated as problematic. This affects the function Client.websocket/AsyncClient.websocket of the file src/httpcore2/httpcore2/_sync/socks_proxy.py of the component SOCKS Proxy. The manipulation leads to improper certificate validation.

This vulnerability is traded as CVE-2026-84381. It is possible to initiate the attack remotely. There is no exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More