Shell Command Injection Vulnerability in PraisonAI by MervinPraison
CVE-2026-40088

9.7CRITICAL

Key Information:

Status
Vendor
CVE Published:
9 April 2026

What is CVE-2026-40088?

The PraisonAI platform, designed for multi-agent teams, contains a vulnerability that allows for shell command injection through the execute_command function. This vulnerability stems from the handling of user-controlled input within agent workflows, YAML definitions, and LLM-generated tool calls. Attackers can exploit this flaw to inject arbitrary shell commands by utilizing shell metacharacters, potentially compromising system integrity. The issue has been addressed and resolved in version 4.5.121.

Affected Version(s)

PraisonAI < 4.5.121

References

CVSS V3.1

Score:
9.7
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.