Subprocess Escaping Vulnerability in PraisonAI by Mervin Praison
CVE-2026-34955

8.8HIGH

Key Information:

Status
Vendor
CVE Published:
3 April 2026

What is CVE-2026-34955?

PraisonAI, a multi-agent teams system developed by Mervin Praison, has a vulnerability in its SubprocessSandbox feature. In versions prior to 4.5.97, this system improperly handles subprocess calls due to its reliance on string-pattern matching for command blocking. Although several modes of operation are available (BASIC, STRICT, NETWORK_ISOLATED), the lack of protection against standalone executable commands like 'sh' or 'bash' results in a significant security flaw. Attackers can exploit this weakness to execute arbitrary commands in STRICT mode, effectively escaping the intended sandbox environment. This vulnerability emphasizes the importance of thorough command validation and secure subprocess handling in software design. The issue has been resolved in version 4.5.97.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

PraisonAI < 4.5.97

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.