CVE-2026-47391: PraisonAI is a multi-agent teams system. Prior to version 4.6.40, PraisonAI's first-party A2A server example exposes an unauthenticated A2A JSON-RPC endpoint and registers a `calculate(expression)`...
Added to the CISA Known Exploited Vulnerabilities catalog on 21 Jul 2026. Vendor: AI/ML. Product: LLM. CVSS score: 9.8.
PraisonAI is a multi-agent teams system. Prior to version 4.6.40, PraisonAI's first-party A2A server example exposes an unauthenticated A2A JSON-RPC endpoint and registers a `calculate(expression)` tool implemented with Python `eval()`. The example also binds to `0.0.0.0`. A remote unauthenticate...
Required action: Review and patch if applicable to your AI infrastructure.