


Perceptive Security
SOC/SIEM Consultancy

PraisonAI is a multi-agent teams system. Prior to praisonai 4.6.51, the Jobs API create_app function mounts /api/v1/runs without authentication. Any reachable c…
Published:
25 August 2026 at 00:00:00
Alert date:
25 August 2026 at 19:07:30
Source:
nvd.nist.gov
Web Technologies, Identity & Access, Emerging Technologies
PraisonAI, a multi-agent teams system, contains a critical vulnerability in its Jobs API where the create_app function mounts the /api/v1/runs endpoint without any authentication. Prior to version 4.6.51, any reachable caller could exploit this to submit jobs, read results, cancel runs, or delete jobs using operator-level credentials. This effectively grants unauthorized users full control over job operations without requiring any credentials. The vulnerability poses significant risk as it allows unauthenticated access to sensitive job management functionality. The fix introduces PRAISONAI_JOBS_API_KEY middleware that enforces authentication via Authorization or X-API-Key headers. The issue has been patched in version 4.6.58 of PraisonAI.
Technical details
Mitigation steps:
Affected products:
PraisonAI
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-55539
https://github.com/MervinPraison/PraisonAI/commit/2f9677abb2ea68eab864ee8b6a828fd0141612e1
https://github.com/MervinPraison/PraisonAI/releases/tag/v4.6.58
https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-2jgc-f764-c5r2
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
