CVE-2026-34954Disclosure(praison / praisonaiagents)

LOWCVSS 8.6 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch praison praisonaiagents systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

PraisonAI is a multi-agent teams system. Prior to version 1.5.95, FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, passing it directly to httpx.stream() with follow_redirects=True. An attacker who controls the URL can reach any host accessible from the server including cloud metadata services and internal network services. This issue has been patched in version 1.5.95.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • praisonaiagents

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 2d ago at 1 mentions (2026-04-03); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
praisonaiagents

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-04-03: 1Mentions · 2026-04-04: 1Mentions · 2026-04-14: 1Patch / Workaround · 2026-04-03: 1Patch / Workaround · 2026-04-14: 1Technical Details · 2026-04-04: 1Technical Details · 2026-04-14: 104-0304-0404-14
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-031
Patch1
2026-04-041
Disclosure1
2026-04-141
Disclosure1
Full discourse3 posts
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2026-34954: HIGH] PraisonAI patch 1.5.95 fixes critical security flaw in http://FileTools.download_file(). Ensure systems are updated to prevent potential cyber attacks via malicious URLs.#cve,CVE-2026-34954,#cybersecurity https://cvefind.com/CVE-2026-34954

    Post summary

    The post announces a patch (PremiereAI 1.5.95) for CVE‑2026‑34954 and urges updates to prevent potential attacks.

    0001048
    619 followersView on X
  • Giuseppe Paternicola@giuseppe_1337
    Disclosure

    ```json { "x": "🚨 HIGH: CVE-2026-34954 (CVSS 8.6) - SSRF in PraisonAI multi-agent system allows attackers to reach cloud metadata & internal services via unvalidated URLs. Patch to v1.5.95+ immediately. https://t.co/mCmojsPIwc

    Post summary

    The post announces a high‑severity SSRF vulnerability (CVE‑2026‑34954, CVSS 8.6) in PraisonAI's multi‑agent system, urges users to update to v1.5.95+, and provides technical details but no PoC or active exploitation evidence.

    0000028
    25 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-34954 - High PraisonAI is a multi-agent teams system. Prior to version 1.5.95, http://FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, ... https://www.thehackerwire.com/vulnerability/CVE-2026-34954/ https://t.co/1s0JIonLap

    Post summary

    The post discloses that CVE-2026-34954 affects PriasonAI’s FileTools.download_file() by lacking URL validation, presenting a vulnerability. No PoC, exploit code, patch, or evidence of active exploitation is mentioned.

    0000048
    164 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppraisonpraisonaiagents---

Explore more