Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-44340 |
|
Path Traversal in praison (CVE-2026-44340)
path traversal in praison (CVE-2026-44340). Data can be tampered with by attackers.
|
| CVE-2026-44334 |
|
Code Injection in praison (CVE-2026-44334)
code injection in praison (CVE-2026-44334). Successful exploitation can lead to full system takeover. Exploitable via `POST /v1/recipes/run`.
|
| CVE-2026-44336 |
|
Vulnerability in praison (CVE-2026-44336)
vulnerability in praison (CVE-2026-44336). Successful exploitation can lead to full system takeover. Exploitable via ``praisonai.rules.create``.
|
| CVE-2026-44337 |
|
Vulnerability in praison (CVE-2026-44337)
vulnerability in praison (CVE-2026-44337). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44338 |
|
Vulnerability in c (CVE-2026-44338)
vulnerability in c (CVE-2026-44338). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44339 |
|
Vulnerability in praison (CVE-2026-44339)
vulnerability in praison (CVE-2026-44339). Data can be tampered with by attackers.
|
| CVE-2026-41496 |
|
SQL Injection in praison (CVE-2026-41496)
SQL injection in praison (CVE-2026-41496). Confidential information can be exposed externally.
|
| CVE-2026-41497 |
|
Command Injection in praison (CVE-2026-41497)
command injection in praison (CVE-2026-41497). Successful exploitation can lead to full system takeover. Exploitable via ``bash``. Mitigation: upgrade to `>= 4.6.9` or later.
|