Ad

CVE-2026-40151

MEDIUM CVSS 3.1: 5.3 EPSS 0.04%
Updated Apr 09, 2026
Praisonai
Parameter Value
CVSS 5.3 (MEDIUM)
Fixed In 4.5.128
Type CWE-200 (Information Exposure)
Vendor Praisonai
Public PoC No

PraisonAI is a multi-agent teams system. Prior to 4.5.128, the AgentOS deployment platform exposes a GET /api/agents endpoint that returns agent names, roles, and the first 100 characters of agent system instructions to any unauthenticated caller. The AgentOS FastAPI application has no authentication middleware, no API key validation, and defaults to CORS allow_origins=["*"] with host="0.0.0.0", making every deployment network-accessible and queryable from any origin by default.

This vulnerability is fixed in 4.5.128.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
Low
Partial data leak
Integrity
None
No data modification
Availability
None
No disruption

CVSS Vector v3.1

Weakness Type (CWE)