Security Advisory

CVE-2026-56074

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-18 22:12:22
Last updated 2026-06-22 12:45:20
Assigner VulnCheck
CVSS score 6.8
State PUBLISHED

Description

PraisonAI before 1.5.128 caches tool approval decisions by tool name only, not by invocation arguments, allowing subsequent execute_command calls to bypass approval prompts. Attackers can exploit this by obtaining initial approval for a benign command, then silently exfiltrate API keys and credentials via subsequent shell commands without user consent.