Sysdig[verified]@sysdigActive Exploitation
The message highlights that CVE-2026-44338 began being actively exploited only about 3.5 hours after disclosure, underscoring the rapid exploitation risk for AI-focused projects.
TodayInCyber[verified]@TodayInCyberIOActive Exploitation
Threat actors have exploited CVE-2026-44338 within hours of its public disclosure; no PoC, exploit code, patch, or false‑positive claim is provided, and the vulnerability is described as a critical authentication bypass.
connect24h[verified]@connect24hActive Exploitation
The report indicates that PraisonAI’s authentication bypass vulnerability (CVE‑2026‑44338, CVSS 7.3) was actively exploited within four hours of disclosure, underscoring the urgency of addressing AI infrastructure security.
DFIR Radar[verified]@DFIR_RadarActive Exploitation
CVE‑2026‑44338 was actively exploited within 4 hours, with an authentication bypass via hard‑coded settings in PraisonAI’s api_server.py, and WAF rules are recommended as a mitigation.
Blue Team News[verified]@blueteamsec1Active Exploitation
An authorization bypass vulnerability (CVE‑2026‑44338) in PraisonAI was reportedly targeted within hours of its public disclosure, indicating active exploitation in the wild.
Rock Lambros[verified]@rocklambrosGeneral
The tweet notes a vulnerability (CVE‑2026‑44338) was probed shortly after disclosure and cites a general exploitation statistic, without providing technical details, patches, or evidence of active exploitation.
Kwame[verified]@kwame_nyxActive Exploitation
CVE‑2026‑44338 was disclosed and quickly exploited, targeting the Flask API that had AUTH_ENABLED set to false, while no patch or exploit code is publicly referenced.
White Rabbitx 🏴☠️[verified]@TheRabbitPyPatch
A new authentication bypass vulnerability (CVE-2026-44338) affects PraisonAI, urging users to review deployments and patch promptly to prevent potential unauthorized access to sensitive AI agent workflows.