CVE-2026-40159
Medium Severity
Description
PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI’s MCP (Model Context Protocol) integration allows spawning background servers via stdio us...
Related Vulnerabilities
- CVE-2021-47961: A plaintext storage of a password vulnerability in Synology SSL VPN Client before 1.4.5-0684 allows HIGH
- CVE-2026-35651: OpenClaw versions 2026.2.13 through 2026.3.24 contain an ANSI escape sequence injection vulnerabilit MEDIUM
- CVE-2026-40157: PraisonAI is a multi-agent teams system. Prior to 4.5.128, cmd_unpack in the recipe CLI extracts .pr CRITICAL
- CVE-2026-36233: A SQL injection vulnerability was found in the assignInstructorSubjects.php file of itsourcecode Onl CRITICAL
- CVE-2026-3690: OpenClaw Canvas Authentication Bypass Vulnerability. This vulnerability allows remote attackers to b HIGH
Related Coverage
Threat Actors