CVE-2025-62373 | pipecat-ai pipecat up to 0.0.93 Pickle livekit.py deserialize deserialization (EUVD-2025-209570)
A vulnerability was found in pipecat-ai pipecat up to 0.0.93 and classified as critical. The impacted element is the function deserialize of the file src/pipecat/serializers/livekit.py of the component Pickle Handler. Executing a manipulation can lead to deserialization.
This vulnerability is handled as CVE-2025-62373. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.