#PraisonAI
📦 MervinPraison / PraisonAI
⭐ 2,586 (+43)
🗒 Jupyter Notebook

PraisonAI is an AI Agents Framework with Self Reflection. PraisonAI application combines PraisonAI Agents, AutoGen, and CrewAI into a low-code solution for building and managing multi-agent LLM systems, focusing on simplicity,...
GitHub - MervinPraison/PraisonAI: PraisonAI is an AI Agents Framework with Self Reflection. PraisonAI application combines PraisonAI Agents, AutoGen, and CrewAI into a low-code solution for building and managing multi-agent LLM systems, focusing on simplicity, customisation, and efficient human–agent collaboration.
PraisonAI is an AI Agents Framework with Self Reflection. PraisonAI application combines PraisonAI Agents, AutoGen, and CrewAI into a low-code solution for building and managing multi-agent LLM sys...
github.com
December 30, 2024 at 6:01 PM
-Gammaredon continues WinRAR campaigns
-Deep dive into Doppelganger
-FamousSparrow targets Azerbaijan's oil and gas industry
-Latest AI frontier models are closing on the cyber horizon
-PraisonAI attacks start after 3h
-FunnelKit exploitation
-AMD finds priv-esc bug in CPUs
-New Fragnesia Linux LPE
May 15, 2026 at 8:29 AM
Four critical vulnerabilities in PraisonAI expose multi-agent systems to complete compromise. CVSS scores up to 9.9 - patch now. https://www.hexon.bot/blog/praisonai-critical-vulnerabilities-multi-agent-security-april-2026 #AIsecurity #PraisonAI #CVE
April 9, 2026 at 5:30 PM
📌 CVE-2026-40289 - PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the browser bridge (praisonai browser ... https://www.cyberhub.blog/cves/CVE-2026-40289
CVE-2026-40289
PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the browser bridge (praisonai browser start) is vulnerable to unauthenticated remote session hijacking due to missing authentication and a bypassable origin check on its /ws WebSocket endp
www.cyberhub.blog
April 20, 2026 at 7:37 PM
【脆弱性情報】PraisonAIの脆弱性について

PraisonAI の praisonai-agents に含まれる execute_code() には、攻撃者が制御する Python コードを三層のサンドボックス内で実行する仕組みがありましたが、
【脆弱性情報】PraisonAIの脆弱性について
PraisonAI の praisonai-agents に含まれる execute_code() には、攻撃者が制御する Python コードを三層のサンドボックス内で実行する仕組みがありましたが、
www.cybernote.click
April 6, 2026 at 10:38 AM
PraisonAI by MervinPraison helps developers build agents that research, plan, code, and execute tasks, with memory, RAG, and support for over 100 LLMs. #software
September 12, 2026 at 12:10 PM
📌 CVE-2026-40288 - PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the workflow engine is vulnerable to a... https://www.cyberhub.blog/cves/CVE-2026-40288
CVE-2026-40288
PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the workflow engine is vulnerable to arbitrary command and code execution through untrusted YAML files. When praisonai workflow run <file.yaml> loads a YAML file with type: job, the JobWor
www.cyberhub.blog
April 20, 2026 at 7:08 PM
🔴 CVE-2026-34935 - Critical (9.8)

PraisonAI is a multi-agent teams system. From version 4.5.15 to before version 4.5.69, the --mcp ...

https://www.themasherwire.com/vulnerability/CVE-2026-34935/

#infosec #potatosecurity #CVE #vulnerability #security #patchstack
April 4, 2026 at 3:00 AM
📌 CVE-2026-44339 - PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.37 and praisonaiagents version 1.6.37, praisonaiagents resolves unresolved too... https://www.cyberhub.blog/cves/CVE-2026-44339
CVE-2026-44339
PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.37 and praisonaiagents version 1.6.37, praisonaiagents resolves unresolved tool names against module globals and __main__ after it fails to match the declared tool list and the registry. With the default agent configuration, _pe
www.cyberhub.blog
May 9, 2026 at 12:07 AM
📌 CVE-2026-41496 - PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.9 and praisonaiagents version 1.6.9, the fix for CVE-2026-40315 added input va... https://www.cyberhub.blog/cves/CVE-2026-41496
CVE-2026-41496
PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.9 and praisonaiagents version 1.6.9, the fix for CVE-2026-40315 added input validation to SQLiteConversationStore only. Nine sibling backends — MySQL, PostgreSQL, async SQLite/MySQL/PostgreSQL, Turso, SingleStore, Supabase, Surr
www.cyberhub.blog
May 9, 2026 at 4:07 AM
Building AI agents usually means stitching together memory, RAG, LLM routing, and orchestration yourself. PraisonAI ships all of that in one open-source framework, deployable in 5 lines of Python or JS. Full specs in the next tweet. #DevTools
May 8, 2026 at 1:26 AM
🟠 CVE-2026-61437 - High (7.8)

PraisonAI (pip package praisonaiagents) before 1.6.78 contains an unsafe dynamic module loading v...

https://www.thehackerwire.com/vulnerability/CVE-2026-61437/

#infosec #cybersecurity #CVE #vulnerability #security #patchstack
July 12, 2026 at 3:00 AM
🚨 EUVD-2026-37958
📊 6.8/10
🏢 PraisonAI

📝 PraisonAI before 1.5.128 caches tool approval decisions by tool name only, not by invocation arguments, allowing subsequent execute_command calls to byp...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-37958

#cybersecurity #infosec #cve #euvd
June 19, 2026 at 12:00 AM
📌 CVE-2026-34938 - PraisonAI is a multi-agent teams system. Prior to version 1.5.90, execute_code() in praisonai-agents runs attacker-controlled Python inside a three-la... https://www.cyberhub.blog/cves/CVE-2026-34938
CVE-2026-34938
PraisonAI is a multi-agent teams system. Prior to version 1.5.90, execute_code() in praisonai-agents runs attacker-controlled Python inside a three-layer sandbox that can be fully bypassed by passing a str subclass with an overridden startswith() method to the _safe_getattr wrapper, achieving arbitr
www.cyberhub.blog
April 14, 2026 at 7:07 PM
CVE-2026-44337 - PraisonAI knowledge-store backends interpolate unvalidated collection names into SQL and CQL queries
CVE ID : CVE-2026-44337

Published : May 8, 2026, 2:16 p.m. | 26 minutes ago

Description : PraisonAI is a multi-agent teams system. From version 2.4.1 to ...
CVE-2026-44337 - PraisonAI knowledge-store backends interpolate unvalidated collection names into SQL and CQL queries
PraisonAI is a multi-agent teams system. From version 2.4.1 to before version 4.6.34, PraisonAI exposes optional SQL/CQL-backed knowledge-store implementations that build table and index identifiers from unvalidated name and collection arguments. Applications that pass untrusted collection names into these backends can trigger SQL or CQL injection. This issue has been …
cvefeed.io
May 8, 2026 at 5:42 PM
PraisonAI, from MervinPraison, cuts the setup: you get multi-agent workflows with memory and RAG in about five lines of Python, across 100+ LLM providers. The agents research, plan, code and execute tasks. #software
September 5, 2026 at 8:17 PM
2026年07月12日の重要脆弱性: PraisonAI、Joomla拡張機能など5件

2026年07月12日に公開された、PraisonAI、Joomla拡張機能に関するCVSS 9.0以上の重要脆弱性5件の速報です。
2026年07月12日の重要脆弱性: PraisonAI、Joomla拡張機能など5件
2026年07月12日に公開された、PraisonAI、Joomla拡張機能に関するCVSS 9.0以上の重要脆弱性5件の速報です。
vuln.devops-digest.com
July 12, 2026 at 4:33 AM
The disclosure-to-exploit window has collapsed. ⏱️ A critical auth bypass in PraisonAI (CVE-2026-44338) was exploited by automated scanners in under 4 hours. A stark reminder to patch immediately. #CyberSecurity #Vulnerability #Automation #AI
PraisonAI Auth Bypass (CVE-2026-44338) Exploited Within Four Hours of Disclosure
A critical authentication bypass in the PraisonAI framework (CVE-2026-44338) was actively exploited by automated scanners just four hours after public disclosure, highlighting the speed of modern attacks.
cyber.netsecops.io
May 14, 2026 at 2:19 PM
📌 CVE-2026-44334 - PraisonAI is a multi-agent teams system. From version 4.5.139 to before version 4.6.32, CVE-2026-40287's fix gated tools.py auto-import behind PRAISON... https://www.cyberhub.blog/cves/CVE-2026-44334
CVE-2026-44334
PraisonAI is a multi-agent teams system. From version 4.5.139 to before version 4.6.32, CVE-2026-40287's fix gated tools.py auto-import behind PRAISONAI_ALLOW_LOCAL_TOOLS=true in two files (tool_resolver.py, api/call.py). A third import sink in praisonai/templates/tool_override.py was missed and rem
www.cyberhub.blog
May 9, 2026 at 12:37 AM
【注意喚起】マルチエージェントシステム「PraisonAI」に脆弱性が報告されています(CVE-2026-40156)。

作業ディレクトリ内の `tools.py` を自動読み込みする仕様が悪用されるリスクがあるようです。運用中の環境を見直して、最新版へのアップデートを推奨します。 #AI #PraisonAI #セキュリティ

https://cvefeed.io/vuln/detail/CVE-2026-40156
CVE-2026-40156 - PraisonAI Affected by Implicit Execution of Arbitrary Code via Automatic `tools.py` Loading
PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI automatically loads a file named tools.py from the current working directory to discover and register custom agent tools. This loading process uses importlib.util.spec_from_file_location and immediately executes module-level code via spec.loader.exec_module() without explicit user consent, validation, or sandboxing. The tools.py file …
cvefeed.io
April 11, 2026 at 12:10 AM
Hackers Targeted PraisonAI Vulnerability Hours After Disclosure

The first exploitation attempts were observed less than four hours after the authentication bypass was publicly disclosed.

Telegram AI Digest
#ai #news
Hackers Targeted PraisonAI Vulnerability Hours After Disclosure
The first exploitation attempts were observed less than four hours after the authentication bypass was publicly disclosed.
www.securityweek.com
May 15, 2026 at 6:58 AM
📌 CVE-2026-39891 - PraisonAI is a multi-agent teams system. Prior to 4.5.115, the create_agent_centric_tools() function returns tools (like acp_create_file) that process... https://www.cyberhub.blog/cves/CVE-2026-39891
CVE-2026-39891
PraisonAI is a multi-agent teams system. Prior to 4.5.115, the create_agent_centric_tools() function returns tools (like acp_create_file) that process file content using template rendering. When user input from agent.start() is passed directly into these tools without escaping, template expressions
www.cyberhub.blog
June 2, 2026 at 12:37 PM
PraisonAI's auth bypass was being exploited four hours after public disclosure.

LiteLLM's was 36 hours. The next one will not be measured in hours, it will be measured in minutes. Patch programs sized for weekly cadence are obsolete.

thehackernews.com/2026/05/pra...
PraisonAI CVE-2026-44338 Auth Bypass Targeted Within Hours of Disclosure
PraisonAI auth bypass exposed /agents after May 11 disclosure, enabling exploit checks within 3h44m.
thehackernews.com
May 25, 2026 at 7:00 PM
CVE-2026-44338:4時間以下のPraisonAI認証回避と急速な悪用の増加傾向

脅威研究ディレクター2026年5月11日、GitHubはアドバイザリーGHSA-6rmh-7xcm-cpxjを公開し、CVE-2026-44338として追跡されているPraisonAI(約7,100のGitHubスターを持つオープンソースのマルチエージェントオーケストレーションフレームワーク)向けの脆弱性を発表しました
CVE-2026-44338:4時間以下のPraisonAI認証回避と急速な悪用の増加傾向
脅威研究ディレクター2026年5月11日、GitHubはアドバイザリーGHSA-6rmh-7xcm-cpxjを公開し、CVE-2026-44338として追跡されているPraisonAI(約7,100のGitHubスターを持つオープンソースのマルチエージェントオーケストレーションフレームワーク)向けの脆弱性を発表しました
blackhatnews.tokyo
May 14, 2026 at 5:38 PM