Skip to content
PraisonAI Vulnerability Exploited Hours After Disclosure

PraisonAI Vulnerability Exploited Hours After Disclosure

First seen 15 May 2026, 11:58 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster May 16, 2026 at 11:22 UTC
  • CVE-2026-44338 is a critical authentication bypass vulnerability in PraisonAI.
  • Exploitation began within hours of the vulnerability's public disclosure on May 8, 2026.
  • Organizations are urged to upgrade to PraisonAI version 4.6.34 to mitigate risks.

A critical authentication bypass vulnerability in PraisonAI, tracked as CVE-2026-44338, was publicly disclosed on May 8, 2026, and has already been exploited by threat actors within hours of its announcement. The flaw affects versions 2.5.6 to 4.6.33 of PraisonAI's legacy Flask-based API server, which shipped with authentication disabled by default. Sysdig reported that scanning for vulnerable instances began less than four hours after the GitHub advisory was published. The vulnerability allows any reachable caller to interact with agent workflows without valid tokens, posing a significant risk to organizations that have not audited their security configurations. The flaw has a CVSS score of 7.3, indicating a high severity level, and organizations are urged to upgrade to version 4.6.34 immediately to mitigate risks. The rapid exploitation highlights the urgency for organizations to implement robust security measures around AI services.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 118d ago How this analysis works

Timeline

2026-05-08
CVE-2026-44338 published
A critical authentication bypass vulnerability in PraisonAI was publicly disclosed, affecting versions 2.5.6 to 4.6.33.
Cybersecuritynews
2026-05-11
GitHub advisory published
A GitHub advisory detailing the vulnerability was published at 13:56 UTC, prompting immediate attention from security researchers.
Csoonline
2026-05-11
Scanning activity begins
Internet scanners began probing for vulnerable PraisonAI instances approximately three hours and 44 minutes after the advisory was published.
Csoonline
2026-05-15
First public PoC released
The first public proof of concept (PoC) for exploiting CVE-2026-44338 was released, indicating active exploitation in the wild.
Cybersecuritynews

More articles in this cluster (4)

Following this threat?

Track CVE-2026-44338 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed