Praisonaiagents
48 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Praisonaiagents, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Praisonaiagents CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 20 |
| 2026-05 | 3 |
| 2026-06 | 11 |
| 2026-07 | 2 |
| 2026-08 | 5 |
| 2026-09 | 7 |
Severity
How the 48 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical7
- High15
- Medium8
Latest CVEs
The 15 most recently published vulnerabilities affecting Praisonaiagents.
- CVE-2026-57112PraisonAI ToolsMCPServer legacy SSE transport accepts attacker Host/Origin and exposes registered tools8.3
- CVE-2026-57129PraisonAI: Arbitrary File Read via `@file:` Mention Path Traversal7.5
- CVE-2026-57120PraisonAI: execute_code sandbox bypass: str.format C-level attribute access reads every blocklisted dunder6.5
- CVE-2026-57123PraisonAI: MCP SSE transport binds 0.0.0.0 with no authentication and no Origin validation; bundled SecurityConfig is never wired in9.8
- CVE-2026-57130PraisonAI: IMAP Command Injection via Unsanitized Email Search Parameters8.1
- CVE-2026-57115PraisonAI: SpiderTools redirect-target SSRF protection bypass6.5
- CVE-2026-57125PraisonAI: Unauthenticated RCE via Jobs API + Approval Bypass9.8
- CVE-2026-55530PraisonAI: ast_grep_rewrite rewrites arbitrary files without the @require_approval gate enforced on every sibling mutation tool6.1
- CVE-2026-55526PraisonAI: SSRF protection bypass in `spider_tools._host_is_blocked()` via DNS-resolved hostnames (`127.0.0.1.nip.io`)8.5
- CVE-2026-55528praisonaiagents: AgentServer declares auth_token but never enforces it on any route (CWE-862)8.2
- CVE-2026-55525PraisonAI: SSRF via redirect-following in praisonaiagents web_crawl7.5
- CVE-2026-55522PraisonAI workflow include bypasses tools.py autoload opt-in and executes included recipe code7.8
- CVE-2026-47395PraisonAI CLI automatically resolves @url mentions in prompt text and can read loopback URLs into model context5.5
- CVE-2026-47390PraisonAI spider_tools SSRF protection bypass via alternate loopback host encodings5.5
- GHSA-4pcv-mg8v-vrgfPraisonAI: Server-Side Request Forgery (SSRF) in SearxNG / search_web tools via attacker-controlled searxng_url parameter—
Product grouping is registry-driven, with AI assist and human review. How it works