检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-C2M8-4GCG-V22G CVE-2026-47416 | praisonai-platform: Any workspace member can promote themselves or others to owner via PATCH /workspaces/{id}/members/{user_id} | 严重 | PyPIpraisonai-platform | 已审查 | 2026-05-30 07:01 | 2026-05-30 07:01 |
| GHSA-W388-2392-PX73 CVE-2026-47409 |
当前筛选结果 35,190 条 · 时间按北京时间显示
praisonai-platform: Missing authorization on member removal enables full workspace takeover by any user regardless of role |
| 高危 |
PyPIpraisonai-platform |
| 已审查 |
| 2026-05-30 06:57 |
| 2026-05-30 06:57 |
| GHSA-5JX9-W35F-VP65 CVE-2026-47414 | praisonai-platform: Label endpoints' unchecked label_id/issue_id enable cross-workspace label IDOR (edit, delete, link) | 高危 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:51 | 2026-05-30 06:51 |
| GHSA-4X6R-9V57-3GQW CVE-2026-47406 | praisonai-platform: IDOR in dependency endpoints allows cross-workspace issue linking, reading, and deletion due to missing ownership checks | 高危 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:45 | 2026-05-30 06:45 |
| GHSA-3QG8-5G3R-79V5 CVE-2026-47410 | praisonai-platform: JWT signing key defaults to hardcoded "dev-secret-change-me", allowing token forgery for any user when PLATFORM_ENV is unset | 严重 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:42 | 2026-05-30 06:42 |
| GHSA-H37G-4H4P-9X97 CVE-2026-47405 | PraisonAI Platform: Missing role checks let any workspace member become owner and control workspace membership | 高危 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:42 | 2026-05-30 06:42 |
| GHSA-6H6V-6M7W-7VXX CVE-2026-47399 | PraisonAI Platform workspace-scoped routes allow cross-workspace object access by global object ID | 高危 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:35 | 2026-05-30 06:35 |
| GHSA-H8Q5-CP56-RR65 CVE-2026-47407 | PraisonAI Platform has a cross-workspace IDOR + member-role privilege escalation | 严重 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:34 | 2026-05-30 06:34 |
| GHSA-27P4-PJQV-WHGJ CVE-2026-47408 | praisonai-platform: list_issue_activity returns activity log for any issue regardless of workspace ownership | 中危 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:34 | 2026-05-30 06:34 |
| GHSA-GV23-XRM3-8C62 CVE-2026-48169 | PraisonAI has Cross-Workspace IDOR and Privilege Escalation via Platform API | 高危 | PyPIpraisonai-platform | 已审查 | 2026-05-30 06:32 | 2026-08-08 05:16 |
| GHSA-HVHP-V2GC-268Q CVE-2026-47397 | PraisonAI has an Arbitrary File Write in Python API | 高危 | PyPIPraisonAI | 已审查 | 2026-05-30 06:31 | 2026-05-30 06:31 |
| GHSA-VG22-4GMJ-PRXW CVE-2026-47391 | PraisonAI's unauthenticated A2A official example can reach real LLM-driven `eval()` tool execution | 严重 | PyPIPraisonAI | 已审查 | 2026-05-30 06:31 | 2026-05-30 06:31 |
| GHSA-9CR9-25Q5-8PRJ CVE-2026-47394 | PraisonAI vulnerable to unauthenticated arbitrary file read via MCP workflow.show, workflow.validate, deploy.validate | 高危 | PyPIPraisonAI | 已审查 | 2026-05-30 06:30 | 2026-05-30 06:30 |
| GHSA-4MR5-G6F9-CFRH CVE-2026-47392 | PraisonAI vulnerable to sandbox escape via `print.__self__` builtins module leak in `execute_code` (subprocess mode) | 严重 | PyPIPraisonAI+1 | 已审查 | 2026-05-30 06:30 | 2026-05-30 06:30 |
| GHSA-5CXW-77WG-JRF3 CVE-2026-47395 | PraisonAI CLI automatically resolves @url mentions in prompt text and can read loopback URLs into model context | 中危 | PyPIPraisonAI+1 | 已审查 | 2026-05-30 06:29 | 2026-05-30 06:29 |
| GHSA-8444-4FHQ-FXPQ CVE-2026-47393 | PraisonAI `deploy --type api` emits a Flask server with authentication disabled by default | 严重 | PyPIPraisonAI | 已审查 | 2026-05-30 06:29 | 2026-05-30 06:29 |
| GHSA-86QC-R5V2-V6X6 CVE-2026-47396 | PraisonAI call server exposes unauthenticated agent listing, invocation, and deletion when CALL_SERVER_TOKEN is unset | 严重 | PyPIPraisonAI | 已审查 | 2026-05-30 06:27 | 2026-05-30 06:27 |
| GHSA-5C6W-WWFQ-7QQM CVE-2026-47390 | PraisonAI spider_tools SSRF protection bypass via alternate loopback host encodings | 中危 | PyPIPraisonAI+1 | 已审查 | 2026-05-30 06:27 | 2026-05-30 06:27 |
| GHSA-78R8-WWQV-R299 CVE-2026-47398 | PraisonAI: Arbitrary code execution via unguarded `spec.loader.exec_module` in `agents_generator.py` - sibling of CVE-2026-44334 | 高危 | PyPIPraisonAI | 已审查 | 2026-05-30 06:26 | 2026-05-30 06:26 |
| GHSA-PGXQ-P76C-X9CG CVE-2026-47266 | formie's unauthenticated front-end submission editing can overwrite existing submissions | 高危 | Packagistverbb/formie | 已审查 | 2026-05-30 06:19 | 2026-05-30 06:19 |
| GHSA-9VP8-3HMV-8FGH | stigmem-node's federation peer registration lacked explicit out-of-band approval | 严重 | PyPIstigmem-node | 已审查 | 2026-05-30 06:18 | 2026-05-30 06:18 |
| GHSA-W7PM-9G55-MXFM | stigmem-node's unsigned plugin override could be enabled without a second explicit acknowledgment | 高危 | PyPIstigmem-node | 已审查 | 2026-05-30 06:17 | 2026-05-30 06:17 |
| GHSA-JMFC-HFJQ-PXCP | stigmem-node's federation insecure transport settings may allow non-loopback cleartext federation | 严重 | PyPIstigmem-node | 已审查 | 2026-05-30 06:16 | 2026-05-30 06:16 |
| GHSA-9PC9-4CRJ-MHPJ | stigmem-node's Postgres schema identifier handling required defensive quoting | 高危 | PyPIstigmem-node | 已审查 | 2026-05-30 06:15 | 2026-05-30 06:15 |
| GHSA-XH5J-XJFQ-QVVX | stigmem-node's federation peer token timestamp validation may reject valid peer tokens | 高危 | PyPIstigmem-node | 已审查 | 2026-05-30 06:14 | 2026-05-30 06:14 |