
VulnTracker@vuln_tracker
CVE-2026-57125 (CVSS 9.8): an unauthenticated Jobs API in PraisonAI lets an attacker mark a dangerous command as pre approved, then have a configured AI agent run it directly on the host. No credentials, no operator interaction. Part of a larger cluster of PraisonAI flaws disclosed the same day. Update now. Details: http://vulntracker.io/cves/CVE-2026-57125 #PraisonAI #CVE #AISecurity #VulnTracker
00061584
730 followersView on X
