PraisonAI before 1.6.78 contains a remote code execution vulnerability in SkillTools.run_skill_script() that executes scripts without path containment validation. Attackers can supply absolute file paths to execute arbitrary scripts from any filesystem location, including those outside the intended working directory.
| Vendor | Product | Versions |
|---|---|---|
| praisonai | praisonai | 0 |
Updated severity to CRITICAL and noted that there is no exploit available.
Initial creation