CVE-2026-40159
Medium Severity
Description
PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI’s MCP (Model Context Protocol) integration allows spawning background servers via stdio us...
Related Vulnerabilities
- CVE-2026-32894: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an Insecure Direct Obj HIGH
- CVE-2026-33704: Chamilo LMS is a learning management system. Prior to 1.11.38, any authenticated user (including stu HIGH
- CVE-2026-6013: A vulnerability was detected in D-Link DIR-513 1.10. This vulnerability affects the function formSet HIGH
- CVE-2026-40168: Postiz is an AI social media scheduling tool. Prior to 2.21.5, the /api/public/stream endpoint is vu HIGH
- CVE-2026-40185: TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the HIGH
Related Coverage
Threat Actors