Remote Code Execution Vulnerability in PraisonAI by Mervin Praison
CVE-2026-47395
5.5MEDIUM
What is CVE-2026-47395?
Prior to version 4.6.40 of PraisonAI and version 1.6.40 of praisonaiagents, a serious issue allowed the CLI to expand @url: references in raw prompts, leading to potential remote code execution. The absence of restrictions such as metadata services or approval gates enables attackers to manipulate prompt text, which could result in fetching and injecting data from a localhost address into the model prompt context. This vulnerability can significantly compromise the integrity of the system by executing untrusted code.
Affected Version(s)
PraisonAI < 4.6.40
praisonaiagents < 1.6.40
