Skip to main content
Loading…
    CVE-2026-39306 — PraisonAI is a multi-agent teams system. Prior to 1.5.113, PraisonAI's recipe registry pull flow extracts attacker-controlled .praison tar archives with tar.extractall() and does not validate arch — CVE Database · The Intelligence Room