Praison Praisonaiagents Vulnerabilities

5 advisories affecting Praison Praisonaiagents

5

Total CVEs

4

Critical

1

High

CVE-2026-44335

May 8, 2026

Critical (9.8)

PraisonAI is a multi-agent teams system. Prior to version 1.6.32, the URL checking logic in PraisonAI has a logical flaw that could be bypassed by attackers, leading to SSRF attacks. This issue has be...

Read Advisory

CVE-2026-40288

Apr 14, 2026

Critical (9.8)

PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the workflow engine is vulnerable to arbitrary command and code execution through untrus...

Read Advisory

CVE-2026-40289

Apr 14, 2026

Critical (9.1)

PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the browser bridge (praisonai browser start) is vulnerable to unauthenticated remote ses...

Read Advisory

CVE-2026-34938

Apr 3, 2026

Critical (10.0)

PraisonAI is a multi-agent teams system. Prior to version 1.5.90, execute_code() in praisonai-agents runs attacker-controlled Python inside a three-layer sandbox that can be fully bypassed by passing ...

Read Advisory

CVE-2026-34954

Apr 3, 2026

High (8.6)

PraisonAI is a multi-agent teams system. Prior to version 1.5.95, FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, passing i...

Read Advisory

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.