CVE-2026-62176 PUBLISHED

PraisonAI: Code Injection via f-string Interpolation in Deploy API Server Generation

Assigner: GitHub_M
Reserved: 13.07.2026 Published: 07.10.2026 Updated: 07.10.2026

PraisonAI is a multi-agent teams system. Prior to version 4.6.78, the deploy/api.py module generates Python server code by directly interpolating the agents_file parameter into an f-string that is then written to a file and executed via subprocess.Popen(). An attacker who controls the agents_file value (via CLI argument, configuration, or upstream API) can inject arbitrary Python code. Version 4.6.78 patches the issue.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVSS Score: 9.1

Product Status

Vendor MervinPraison
Product PraisonAI
Versions
  • Version < 4.6.78 is affected

References

Problem Types

  • CWE-94: Improper Control of Generation of Code ('Code Injection') CWE