Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4183 articles · 197350 vulns · 37/41 feeds (7d)
← Back to list
5.3
CVE-2026-60086PATCHED
mervinpraison · praisonai

PraisonAI before 4.6.78 Prompt Injection Defense Bypass

Description

PraisonAI before 4.6.78 contains a prompt injection defense bypass vulnerability where the injection defense only blocks threats classified as CRITICAL, requiring three or more detector families to match simultaneously. Attackers can craft single or double-vector prompt injections that are classified as HIGH threat level and pass through unblocked to reach the model.

Affected Products

VendorProductVersions
mervinpraisonpraisonai0

References

  • https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-4r3p-w3mc-5v34(vendor-advisory)
  • https://www.vulncheck.com/advisories/praisonai-before-prompt-injection-defense-bypass(third-party-advisory)

Related News (1 articles)

Tier C
VulDB46d ago
CVE-2026-60086 | MervinPraison PraisonAI up to 4.6.77 Prompt Injection Defense injection
→ No new info (linked only)
CVSS 3.15.3 NONE
CISA KEV❌ No
Actively exploited❌ No
Patch available
4.6.78
CWECWE-693
PublishedJul 10, 2026
Last enriched46d agov2
Trending Score0
Source articles1
Independent1
Info Completeness8/14
Missing: cvss, epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-55533
PraisonAI: Authentication fail-open in Recipe server allows unauthenticated access when API key or JWT auth is configured without a secret
Trending: 44
HIGHCVE-2026-55538
PraisonAI: [Auth Bypass] `praisonai serve agents --api-key` is silently ignored — agent-invocation routes (`POST /agents`, `POST /agents/{agent_name}`) run unauthenticated
Trending: 44
HIGHCVE-2026-55525
PraisonAI: SSRF via redirect-following in praisonaiagents web_crawl
Trending: 44
HIGHCVE-2026-55532
PraisonAI: Origin-validation bypass (startswith prefix match) enables unauthenticated cross-site request forgery against the PraisonAI MCP HTTP server
Trending: 35
HIGHCVE-2026-55537
PraisonAI: Webhook SSRF via DNS fail-open in `JobSubmitRequest.validate_webhook_url()` — bypass of CVE-2026-40114
Trending: 35

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 10, 2026
Discovered by ZDM
Jul 10, 2026
Updated: severity
Jul 10, 2026
Patch Available
Jul 14, 2026

Version History

v2
Last enriched 46d ago
v2Tier C46d ago

Updated severity to CRITICAL and corrected exploit availability to false.

severity
via VulDB
v146d ago

Initial creation