Cybersecurity

Python Ships Urgent Bugfix Releases: Version 3.14.2 and 3.13.11 Address Regressions and Security Vulnerabilities

2026-05-02 15:36:36

Overview

Just three days after the previous round of updates, the Python team has released two new maintenance versions: Python 3.14.2 and Python 3.13.11. These expedited releases target critical regressions discovered in the latest updates, along with several security fixes. Users are encouraged to upgrade promptly to maintain stability and security.

Python Ships Urgent Bugfix Releases: Version 3.14.2 and 3.13.11 Address Regressions and Security Vulnerabilities

Python 3.14.2: Second Maintenance Release

This is the second maintenance update for the 3.14 series, containing 18 bugfixes, build improvements, and documentation changes since Python 3.14.1. The release focuses on fixing regressions that could disrupt development workflows and runtime behavior.

Key Regressions Fixed

Security Updates

For a complete list of changes, refer to the full changelog for Python 3.14.2.

Python 3.13.11: Eleventh Maintenance Release

This update for the Python 3.13 series addresses regressions similar to those in 3.14.2, ensuring compatibility and reliability across both active release lines.

Key Regressions Fixed

Security Updates

Detailed release notes are available on the Python 3.13.11 download page.

Common Security Fixes

Both releases share the CVE-2025-12084 fix, which eliminates a quadratic time complexity flaw in the node ID cache. This vulnerability could be exploited to cause excessive CPU usage and denial of service. Additionally, the http.server fix (gh-119452) prevents virtual memory exhaustion, while the 3.13 branch also benefits from an extra fix in http.client (gh-119451) that guards against input-based denial-of-service attacks.

Acknowledgments

These releases would not be possible without the dedicated efforts of the Python development community. The release team—Hugo van Kemenade, Thomas Wouters, Ned Deily, Steve Dower, and Łukasz Langa—extends gratitude to all volunteers who contributed fixes, tests, and reviews. Consider supporting the Python Software Foundation through volunteering or corporate sponsorship to sustain this vital open-source project.

How to Update

To upgrade to the latest version, visit the official Python downloads page for Python 3.14.2 and Python 3.13.11, or use your package manager (e.g., pip for virtual environments). After upgrading, run your test suite to ensure compatibility with the newly patched modules.

Stay tuned for further maintenance updates, and happy coding!

Explore

Open Source Board Transforms Google Home Mini into Privacy-Focused Smart Hub for $85 When Observability Becomes Dependency: Hyrum's Law, Restartable Sequences, and the TCMalloc Dilemma Drug-Resistant Salmonella Tied to Backyard Flocks: CDC Warns of Multistate Outbreak 10 Design Lessons from Vienna's Intellectual Circle for a More Amiable Web 5 Critical Facts About VECT 2.0 Ransomware: The Wiper That Makes Recovery Impossible