VulnWatch VulnWatch
← Back to dashboard
Critical nvd · CVE-2026-57145

CVE-2026-57145: PraisonAI is a multi-agent teams system. Prior to 4.6.62, src/praisonai/praisonai/tools/multiedit.py passes the LLM-cont

Published Sep 14, 2026 CVSS 9.1

PraisonAI is a multi-agent teams system. Prior to 4.6.62, src/praisonai/praisonai/tools/multiedit.py passes the LLM-controlled filepath parameter directly to open for reading and writing without traversal rejection, symlink resolution, a workspace boundary, or protected-path checks. Prompt-influenced agents can read files through edit and diff behavior or overwrite files accessible to the process, exposing secrets and enabling persistence or application tampering. This issue is fixed in 4.6.62.

Affected AI Products

llm
Get the weekly digest. Every Monday: top AI security stories of the week. Free.