Beveiligingsadvies

CVE-2026-44337

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-08 13:33:51
Laatst bijgewerkt 2026-05-08 14:19:46
Toegewezen door GitHub_M
CVSS-score 6.3
Status PUBLISHED

Beschrijving

PraisonAI is a multi-agent teams system. From version 2.4.1 to before version 4.6.34, PraisonAI exposes optional SQL/CQL-backed knowledge-store implementations that build table and index identifiers from unvalidated name and collection arguments. Applications that pass untrusted collection names into these backends can trigger SQL or CQL injection. This issue has been patched in version 4.6.34.