检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-P4PJ-VH7H-6CQH CVE-2026-57119 | PraisonAI: Unauthenticated Local File Inclusion via agent_file path in PraisonAI Jobs API | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:56 | 2026-07-21 05:24 |
| GHSA-X227-PF99-VFFG CVE-2026-57123 | PraisonAI: MCP SSE transport binds 0.0.0.0 with no authentication and no Origin validation; bundled SecurityConfig is never wired in |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 严重 |
PyPIpraisonaiagents |
| 已审查 |
| 2026-06-18 21:55 |
| 2026-07-21 05:25 |
| GHSA-PV2J-RGHR-V5R9 CVE-2026-57120 | PraisonAI: execute_code sandbox bypass: str.format C-level attribute access reads every blocklisted dunder | 中危 | PyPIpraisonaiagents | 已审查 | 2026-06-18 21:55 | 2026-07-21 05:24 |
| GHSA-6H9P-93HQ-Q7H6 CVE-2026-57115 | PraisonAI: SpiderTools redirect-target SSRF protection bypass | 中危 | PyPIpraisonaiagents | 已审查 | 2026-06-18 21:55 | 2026-07-21 05:24 |
| GHSA-W6H2-FR4Q-XVXV CVE-2026-57117 | PraisonAI: Compute-bridged file tools allow shell command injection | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:55 | 2026-07-21 05:24 |
| GHSA-V847-HXXW-3PXG CVE-2026-56838 | PraisonAI recipe.run_stream skips dangerous-tool policy enforcement | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:53 | 2026-07-21 05:23 |
| GHSA-63V4-W882-G4X2 CVE-2026-56840 | PraisonAI: HTTPApproval dashboard renders tool arguments as raw HTML, allowing approval-page XSS to approve dangerous tools | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-FC26-M9PF-V56Q CVE-2026-56837 | PraisonAI LinearBot processes unsigned webhooks when LINEAR_WEBHOOK_SECRET is missing | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-J7QX-P75M-WP7G CVE-2026-56834 | PraisonAI dynamic-context artifact tools read arbitrary host files outside artifact storage | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-QVPF-J64C-JMHR CVE-2026-56835 | PraisonAI Slack app_mention bypasses configured user/channel authorization | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-5QW8-F2G9-FF29 CVE-2026-56836 | PraisonAI recipe serve Typer command bypasses the non-localhost authentication guard | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-VMF9-XX9W-86WX CVE-2026-57112 | PraisonAI ToolsMCPServer legacy SSE transport accepts attacker Host/Origin and exposes registered tools | 高危 | PyPIpraisonai+1 | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-22CJ-M4WF-FV2C CVE-2026-56833 | PraisonAI Dynamic Context history and terminal tools read files outside configured storage via path traversal | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-8579-RGG5-PH2M CVE-2026-56832 | PraisonAI DiscordApproval accepts unrelated channel messages as dangerous-tool approvals | 高危 | PyPIpraisonai | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:23 |
| GHSA-G5H5-M4HM-XJRR CVE-2026-55669 | ZITADEL: Missing Token Audience Validation (`aud`) in JWT IdP Provider | 中危 | Gogithub.com/zitadel/zitadel | 已审查 | 2026-06-18 21:52 | 2026-06-18 21:52 |
| GHSA-WXG7-W2V3-W38G CVE-2026-56664 | ZITADEL: Missing Token Lifecyle Validation (`exp` and `iat`) in JWT IdP Provider | 中危 | Gogithub.com/zitadel/zitadel | 已审查 | 2026-06-18 21:52 | 2026-07-19 01:24 |
| GHSA-XQXV-4JC2-X56X CVE-2026-55672 | ZITADEL: Missing client_id binding in OIDC authorization code exchange and refresh token flows (RFC 6749 Section 4.1.3 violation) | 高危 | Gogithub.com/zitadel/zitadel | 已审查 | 2026-06-18 21:52 | 2026-07-16 05:51 |
| GHSA-35W5-PCW4-JX94 CVE-2026-57128 | PraisonAI: Unauthenticated Event Injection via SSE `/publish` Endpoint | 中危 | PyPIpraisonaiagents | 已审查 | 2026-06-18 21:52 | 2026-07-21 05:25 |
| GHSA-6X8V-2FQ5-2229 CVE-2026-55670 | ZITADEL: Cross-Tenant User Leakage via Recycled Identifiers | 低危 | Gogithub.com/zitadel/zitadel | 已审查 | 2026-06-18 21:07 | 2026-06-18 21:07 |
| GHSA-47QP-HQVX-6R3F CVE-2026-56740 | JLine3 Telnet server: Unauthenticated Remote Memory Exhaustion via Unbounded Telnet NEW-ENVIRON Variables | 高危 | Mavenorg.jline:jline-remote-telnet | 已审查 | 2026-06-18 21:07 | 2026-09-02 05:03 |
| GHSA-2R2C-CX56-8933 CVE-2026-56741 | JLine3 Telnet server: Unauthenticated Remote DoS via Unbounded Telnet NAWS Terminal Geometry | 高危 | Mavenorg.jline:jline-remote-telnet | 已审查 | 2026-06-18 21:07 | 2026-09-02 05:02 |
| GHSA-2VCC-5V34-9JC8 CVE-2026-55661 | TinaCMS rich-text (slatejson) rendering does not sanitize link/image URLs, allowing stored XSS via dangerous URL schemes | 中危 | npm@tinacms/mdx+1 | 已审查 | 2026-06-18 21:07 | 2026-06-18 21:07 |
| GHSA-2C85-RFCC-G74J | Karate Mock Server RCE via embedded expression evaluation of request-derived data | 高危 | Mavenio.karatelabs:karate-core | 已审查 | 2026-06-18 21:06 | 2026-06-18 21:06 |
| GHSA-94JP-7776-QJ6Q CVE-2026-55617 | Hydro: Insufficient session expiration when recreating sessions | 中危 | npmhydrooj | 已审查 | 2026-06-18 21:06 | 2026-06-18 21:06 |
| GHSA-GCQ2-9PQ2-CXQM CVE-2026-55603 | http-proxy-middleware: multipart/form-data field injection via unescaped CRLF in `fixRequestBody` | 高危 | npmhttp-proxy-middleware | 已审查 | 2026-06-18 21:06 | 2026-06-18 21:06 |