Agent-to-User Event Stream Vulnerability in PraisonAI
CVE-2026-39889

7.5HIGH

Key Information:

Status
Vendor
CVE Published:
8 April 2026

What is CVE-2026-39889?

The PraisonAI system, used for managing multi-agent teams, has a significant security flaw in its A2U (Agent-to-User) event stream server. Versions prior to 4.5.115 allow access to sensitive agent activity through endpoints such as /a2u/info, /a2u/subscribe, /a2u/events/{stream_name}, /a2u/events/sub/{id}, and /a2u/health without enforcing any authentication checks. This lack of security measures poses a risk of unauthorized access to agent interactions, potentially leading to data breaches and privacy issues.

Affected Version(s)

PraisonAI < 4.5.115

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.