PT-2026-31783 · Praisonai+1 · Praisonai+1

CVE-2026-40114

·

Published

2026-04-09

·

Updated

2026-07-13

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions PraisonAI versions prior to 4.5.128
Description PraisonAI is a multi-agent teams system. The /api/v1/runs endpoint accepts an arbitrary webhook url in the request body without URL validation. Upon job completion (success or failure), the server sends an HTTP POST request to this URL using httpx.AsyncClient. This allows an unauthenticated attacker to make the server send POST requests to arbitrary internal or external destinations, potentially enabling Server-Side Request Forgery (SSRF) against cloud metadata services, internal APIs, and other network-adjacent services.
Recommendations Update PraisonAI to version 4.5.128 or later.

Exploit

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-40114
GHSA-8FRJ-8Q3M-XHGM
PYSEC-2026-2906

Affected Products

Praisonai
Httpx