Track vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-57123: PraisalAI agents lets any network user run registered tools

CVE-2026-57123 · published 16 days ago
Summary

Before version 1.6.59, PraisalAI agents opened network ports that did not require any login or checks, allowing anyone who could reach the server to see and trigger the tools it hosts. This could let an attacker execute files, shell commands, or code on the machine. Update to version 1.6.59 or later and limit access to trusted networks to resolve the issue.

What to do

The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.

Affected software
VendorProductAffected versions
mervinpraison praisonaiagents < 1.6.59
Original advisory text
PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, ToolsMCPServer.run_sse and launch_tools_mcp_server bind to 0.0.0.0 and create /sse and /messages/ routes without invoking t...
PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, ToolsMCPServer.run_sse and launch_tools_mcp_server bind to 0.0.0.0 and create /sse and /messages/ routes without invoking the available SecurityConfig authentication, origin-validation, or DNS-rebinding controls. Any reachable client can list and invoke registered tools, and a browser can target a local instance through DNS rebinding, with impact determined by the registered file, shell, and code-execution tools. This vulnerability is fixed in praisonaiagents 1.6.59.
Fix within
Internet-facing 3 days
Internal 60 days
  • Not known to be exploited
  • Can be exploited automatically
  • Gives an attacker full control
Severity
9.8 Critical
Exploitation
<1% chance of attack within 30 days
Type
CWE-306Missing Authentication for Critical Function
CWE-350Reliance on Reverse DNS Resolution for a Security-Critical Action
CWE-1327Binding to an Unrestricted IP Address
Timeline
Published14 Sep 2026
Updated1 Oct 2026
First seen14 Sep 2026
Sources
CVE-2026-57123 · MITRE
Track software like this
Free during beta