File Access Vulnerability in PraisonAI Affects Multiple Versions
CVE-2026-57145
9.1CRITICAL
What is CVE-2026-57145?
A file access vulnerability exists in PraisonAI, where versions prior to 4.6.62 improperly handle the LLM-controlled filepath parameter. This oversight allows malicious actors to read sensitive files and potentially modify or overwrite them, leading to data exposure and application tampering. Users are advised to upgrade to version 4.6.62 to mitigate these security risks. For more details, visit the official advisory.
Affected Version(s)
PraisonAI < 4.6.62
