Agent-to-User Event Stream Vulnerability in PraisonAI
CVE-2026-39889
7.5HIGH
What is CVE-2026-39889?
The PraisonAI system, used for managing multi-agent teams, has a significant security flaw in its A2U (Agent-to-User) event stream server. Versions prior to 4.5.115 allow access to sensitive agent activity through endpoints such as /a2u/info, /a2u/subscribe, /a2u/events/{stream_name}, /a2u/events/sub/{id}, and /a2u/health without enforcing any authentication checks. This lack of security measures poses a risk of unauthorized access to agent interactions, potentially leading to data breaches and privacy issues.
Affected Version(s)
PraisonAI < 4.5.115
