CVE-2026-57123

CRITICAL Status: Received

CVSS Scores

CVSS v3.x Base Score
9.8
CRITICAL

Description

PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, ToolsMCPServer.run_sse and launch_tools_mcp_server bind to 0.0.0.0 and create /sse and /messages/ routes without invoking the available SecurityConfig authentication, origin-validation, or DNS-rebinding controls. Any reachable client can list and invoke registered tools, and a browser can target a local instance through DNS rebinding, with impact determined by the registered file, shell, and code-execution tools. This vulnerability is fixed in praisonaiagents 1.6.59.

Published
September 14, 2026 3:17 PM
Last Modified
September 14, 2026 3:17 PM
Source
[email protected]

Weaknesses (CWE)

CWE-306 CWE-350 CWE-1327

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.