Track vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.4

CVE-2026-61444: PraisonAI before 4.6.78 lets attackers run code

CVE-2026-61444 · published 2 days ago
Summary

PraisonAI versions earlier than 4.6.78 create a Python script using a value you provide and then automatically run it. If someone can change that value, they can make the system execute any code they want, which could let them take control of your server. Upgrade to version 4.6.78 or later, or make sure the input is strictly checked before it is used.

What to do
  • Update mervin praison praisonai to version 4.6.78.
  • Update praisonai to version 4.6.78.
Affected software
Ecosystem VendorProductAffected versions
pip mervin praison praisonai <= 4.6.77
Fix: upgrade to 4.6.78
pip – praisonai <= 4.6.77
Fix: upgrade to 4.6.78
Original advisory text
PraisonAI before 4.6.78 Code Injection via f-string
PraisonAI is a multi-agent teams system. Prior to version 4.6.78, the `deploy/api.py` module generates Python server code by directly interpolating the `agents_file` parameter into an f-string that is then written to a file and executed via `subprocess.Popen()`. An attacker who controls the `agents_file` value (via CLI argument, configuration, or upstream API) can inject arbitrary Python code. Version 4.6.78 patches the issue.
Fix within
Internet-facing 14 days
Internal At next upgrade
  • Not known to be exploited
  • Needs hands-on effort to exploit
  • Gives an attacker full control
Severity
9.4 Critical
Exploitation
<1% chance of attack within 30 days
Type
CWE-94Code Injection
Timeline
Published7 Oct 2026
Updated9 Oct 2026
First seen7 Oct 2026
Sources
Track software like this
Free during beta