CVE-2026-34953Disclosure(praison / praisonai)

LOWCVSS 9.1 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch praison praisonai systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

PraisonAI is a multi-agent teams system. Prior to version 4.5.97, OAuthManager.validate_token() returns True for any token not found in its internal store, which is empty by default. Any HTTP request to the MCP server with an arbitrary Bearer token is treated as authenticated, granting full access to all registered tools and agent capabilities. This issue has been patched in version 4.5.97.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-863

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • praisonai

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • Peaked 3d ago at 1 mentions (2026-04-02); latest day: 1
  • 4 total mentions across 4 days

Affected systems

Vendors
Products
praisonai

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-04-02: 1Mentions · 2026-04-03: 1Mentions · 2026-04-04: 1Mentions · 2026-04-06: 1PoC Mentioned / Linked · 2026-04-06: 1Patch / Workaround · 2026-04-02: 1Patch / Workaround · 2026-04-03: 1Patch / Workaround · 2026-04-04: 1Technical Details · 2026-04-02: 1Technical Details · 2026-04-03: 1Technical Details · 2026-04-04: 1Technical Details · 2026-04-06: 104-0204-0304-0404-06
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-021
Disclosure1
2026-04-031
Patch1
2026-04-041
Disclosure1
2026-04-061
Disclosure1
Full discourse4 posts
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2026-34953: CRITICAL] PraisonAI's OAuthManager had a security flaw allowing unauthorized access via any token. Update to version 4.5.97 for the fix. #cybersecurity.#cve,CVE-2026-34953,#cybersecurity https://cvefind.com/CVE-2026-34953

    Post summary

    PraionAI's OAuthManager flaw permits unauthorized token access; applying the release 4.5.97 patch resolves the issue.

    0001058
    619 followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2026-34953: PraisonAI: Authentication Bypass... Default-empty token store means any Bearer header bypasses auth—instant RCE on multi-agent systems with zero effort req... https://zerodaysignal.com/vulnerability/CVE-2026-34953 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    CVE-2026-34953 exposes an authentication bypass in PraisonAI that permits immediate Remote Code Execution via any Bearer token. No patches or active exploitation reports are mentioned.

    0000077
    204 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-34953 - Critical PraisonAI is a multi-agent teams system. Prior to version 4.5.97, OAuthManager.validate_token() returns True for any token not found in its internal store, which is empty by default. Any ... https://www.thehackerwire.com/vulnerability/CVE-2026-34953/ https://t.co/BdtYIkjJtW

    Post summary

    The article discloses that PraisionAI’s OAuthManager returned True for any unknown token until version 4.5.97, representing an authentication bypass, and indicates that later releases include a patch.

    0000053
    164 followersView on X
  • Vulert@vulert_official
    Disclosure

    🚨 Critical PraisonAI flaw: CVE-2026-34953 An improper token validation issue could allow unauthorized access. Update now and follow recommended security practices. 🔗 https://vulert.com/vuln-db/CVE-2026-34953 #CyberSecurity #PraisonAI #CVE202634953 #Vulert https://t.co/38arQEKidH

    Post summary

    PraisonAI announced a critical token validation flaw (CVE‑2026‑34953) that could allow unauthorized access, urging users to update and follow security best practices.

    0000035
    122 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppraisonpraisonai---

Explore more