Mistral AI adds security parameter to Completion API to prevent side-channel attacks
Action Required
Applications using the mistral-common package may experience disruptions if they do not update to the latest version of the package.
AI Impact Summary
Mistral AI has introduced a security parameter, 'p', to the Completion API to mitigate token-length side-channel attacks. While SDK users are unaffected, applications relying on strict chunk parsing using the mistral-common package require an update to version 1.8.4 or higher to avoid disruption. This change highlights a proactive security measure, but developers must carefully review their existing code to ensure compatibility.
Affected Systems
- Date
- Date not specified
- Change type
- capability
- Severity
- high