CVE-2026-40158
High Severity
Description
PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI's AST-based Python sandbox can be bypassed using type.__getattribute__ trampoline, allowing ...
Related Vulnerabilities
- CVE-2026-6057: FalkorDB Browser 1.9.3 contains an unauthenticated path traversal vulnerability in the file upload A CRITICAL
- CVE-2026-3360: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to an Insecu HIGH
- CVE-2026-23781: An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A set of default debug user cred CRITICAL
- CVE-2026-4155: ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulne HIGH
- CVE-2026-4162: The Gravity SMTP plugin for WordPress is vulnerable to Missing Authorization in versions up to, and HIGH
Related Coverage
Threat Actors