Skip to main content
Loading…
    CVE-2026-40149 — PraisonAI is a multi-agent teams system. Prior to 4.5.128, the gateway's /api/approval/allow-list endpoint permits unauthenticated modification of the tool approval allowlist when no auth_token is — CVE Database · The Intelligence Room