CVE-2026-39891Disclosure(praison / praisonai)

LOWCVSS 8.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch praison praisonai systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

PraisonAI is a multi-agent teams system. Prior to 4.5.115, the create_agent_centric_tools() function returns tools (like acp_create_file) that process file content using template rendering. When user input from agent.start() is passed directly into these tools without escaping, template expressions in the input are executed rather than treated as literal text. This vulnerability is fixed in 4.5.115.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • praisonai

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-08); latest day: 2
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
praisonai

Deep dive

Activity timeline4 mentions / 2d
01122Mentions · 2026-04-08: 2Mentions · 2026-04-09: 2Patch / Workaround · 2026-04-08: 1Patch / Workaround · 2026-04-09: 1Technical Details · 2026-04-08: 2Technical Details · 2026-04-09: 204-0804-09
Signal classification3 categories
Disclosure
250.0%
General
125.0%
Patch
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-082
General1Patch1
2026-04-092
Disclosure2
Full discourse4 posts
  • DailyCVE@dailycve
    Disclosure

    🔴 PraisonAI, Template Injection, #CVE-2026-39891 (High) https://dailycve.com/praisonai-template-injection-cve-2026-39891-high/

    Post summary

    The post announces a new high‑severity template injection vulnerability in PraisonAI (CVE‑2026‑39891).

    0000030
    178 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-39891: HIGH] Cyber security alert: Prior to version 4.5.115, PraisonAI had a vulnerability where user input could execute template expressions. Update to the latest version to stay protected.#cve,CVE-2026-39891,#cybersecurity https://cvefind.com/CVE-2026-39891

    Post summary

    PraisonAI’s CVE‑2026‑39891 allows template expression execution via user input; the text alerts users to deploy a patch by updating to version 4.5.115.

    0000031
    619 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-39891 PraisonAI is a multi-agent teams system. Prior to 4.5.115, the create_agent_centric_tools() function returns tools (like acp_create_file) that process file content us… https://www.cve.org/CVERecord?id=CVE-2026-39891 ----- Traducción: CVE-2026-39891 Pra… http://infoflow.cloud`

    Post summary

    The post briefly references CVE-2026‑39891 in PraisonAI, noting a function that returns tools handling file content, but provides no exploit, patch, or active exploitation details.

    0000023
    67 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-39891 PraisonAI is a multi-agent teams system. Prior to 4.5.115, the create_agent_centric_tools() function returns tools (like acp_create_file) that process file content us… https://www.cve.org/CVERecord?id=CVE-2026-39891

    Post summary

    CVE‑2026‑39891 affects PraisonAI’s create_agent_centric_tools() function, with the issue fixed in version 4.5.115; no PoC, exploit, or active exploitation reports are referenced.

    00000168
    57.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppraisonpraisonai---

Explore more