Remote Code Execution Vulnerability in PraisonAI by Mervin Praison
CVE-2026-47395

5.5MEDIUM

Key Information:

Vendor
CVE Published:
21 July 2026

What is CVE-2026-47395?

Prior to version 4.6.40 of PraisonAI and version 1.6.40 of praisonaiagents, a serious issue allowed the CLI to expand @url: references in raw prompts, leading to potential remote code execution. The absence of restrictions such as metadata services or approval gates enables attackers to manipulate prompt text, which could result in fetching and injecting data from a localhost address into the model prompt context. This vulnerability can significantly compromise the integrity of the system by executing untrusted code.

Affected Version(s)

PraisonAI < 4.6.40

praisonaiagents < 1.6.40

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.