CVE-2026-40156
High Severity
Description
PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI automatically loads a file named tools.py from the current working directory to discover and...
Related Vulnerabilities
- CVE-2026-3371: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Insecure MEDIUM
- CVE-2026-22560: An open redirect vulnerability in Rocket.Chat versions prior to 8.4.0 allows users to be redirected MEDIUM
- CVE-2021-47961: A plaintext storage of a password vulnerability in Synology SSL VPN Client before 1.4.5-0684 allows HIGH
- CVE-2026-40185: TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the HIGH
- CVE-2026-31941: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, Chamilo LMS contains a HIGH
Related Coverage
Threat Actors