PraisonAI Vulnerability Exploited Hours After Disclosure

PraisonAI Vulnerability Exploited Hours After Disclosure

First seen 15 May 2026, 11:58 UTC CsoonlineCybersecuritynewsGbhackerswww.sysdig.com 82% similarity 72.0

Article Content

Browse articles
ThreatCluster

A critical authentication bypass vulnerability in PraisonAI, tracked as CVE-2026-44338, was publicly disclosed on May 8, 2026, and has already been exploited by threat actors within hours of its announcement. The flaw affects versions 2.5.6 to 4.6.33 of PraisonAI's legacy Flask-based API server, which shipped with authentication disabled by default. Sysdig reported that scanning for vulnerable instances began less than four hours after the GitHub advisory was published. The vulnerability allows any reachable caller to interact with agent workflows without valid tokens, posing a significant risk to organizations that have not audited their security configurations. The flaw has a CVSS score of 7.3, indicating a high severity level, and organizations are urged to upgrade to version 4.6.34 immediately to mitigate risks. The rapid exploitation highlights the urgency for organizations to implement robust security measures around AI services.

Key Points: • CVE-2026-44338 is a critical authentication bypass vulnerability in PraisonAI. • Exploitation began within hours of the vulnerability's public disclosure on May 8, 2026. • Organizations are urged to upgrade to PraisonAI version 4.6.34 to mitigate risks.

ThreatCluster AI

Timeline

2026-05-08
CVE-2026-44338 published
A critical authentication bypass vulnerability in PraisonAI was publicly disclosed, affecting versions 2.5.6 to 4.6.33.
Cybersecuritynews
2026-05-11
GitHub advisory published
A GitHub advisory detailing the vulnerability was published at 13:56 UTC, prompting immediate attention from security researchers.
Csoonline
2026-05-11
Scanning activity begins
Internet scanners began probing for vulnerable PraisonAI instances approximately three hours and 44 minutes after the advisory was published.
Csoonline
2026-05-15
First public PoC released
The first public proof of concept (PoC) for exploiting CVE-2026-44338 was released, indicating active exploitation in the wild.
Cybersecuritynews

Community

Browse all →

Tracked Entities in This Story