Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-gmjg-hv98-qggq | PraisonAI has unsafe tool resolution in `ToolExecutionMixin.execute_tool`: undeclared `__main__` callables execute |
Fri, 08 May 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mervinpraison
Mervinpraison praisonai |
|
| Vendors & Products |
Mervinpraison
Mervinpraison praisonai |
|
| Metrics |
ssvc
|
Fri, 08 May 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Praison
Praison praisonai Praison praisonaiagents |
|
| CPEs | cpe:2.3:a:praison:praisonai:*:*:*:*:*:*:*:* cpe:2.3:a:praison:praisonaiagents:*:*:*:*:*:python:*:* |
|
| Vendors & Products |
Praison
Praison praisonai Praison praisonaiagents |
Fri, 08 May 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.37 and praisonaiagents version 1.6.37, praisonaiagents resolves unresolved tool names against module globals and __main__ after it fails to match the declared tool list and the registry. With the default agent configuration, _perm_allow is None, so undeclared non-dangerous tool names are not rejected by the permission gate. An attacker who can influence tool-call names can therefore invoke unintended application callables that were never declared as tools. This issue has been patched in praisonai version 4.6.37 and praisonaiagents version 1.6.37. | |
| Title | PraisonAI has unsafe tool resolution in `ToolExecutionMixin.execute_tool`: undeclared `__main__` callables execute | |
| Weaknesses | CWE-470 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-05-08T21:27:22.924Z
Reserved: 2026-05-05T19:52:59.147Z
Link: CVE-2026-44339
Updated: 2026-05-08T17:04:12.417Z
Status : Modified
Published: 2026-05-08T14:16:46.887
Modified: 2026-05-08T22:16:33.653
Link: CVE-2026-44339
No data.
OpenCVE Enrichment
Updated: 2026-05-08T22:00:14Z
Github GHSA