CVE-2026-57134
PraisonAI is a multi-agent teams system. From 1.5.1 until 1.7.2, MCPSecurity.evaluatePolicy() in src/praisonai-ts/src/mcp/security.ts invokes the configured credential validator only when AuthMethod is api-key or bearer. Basic and OAuth policies accept any non-empty Authorization header without calling auth.validate(), then return an authenticated result, allowing callers with invalid credentials to access MCP tools and resources protected by those policies. This issue is fixed in version 1.7.2.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.2
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
- EPSS probability
- 0.30%
- CWE
- CWE-287, CWE-288, CWE-863
- Published
- 2026-09-15
- Last modified
- 2026-09-15
Affected products
- MervinPraison PraisonAI
Weakness type
Related vulnerabilities
- CVE-2026-82329 — Potential authentication bypass leading to administrative access in Artifactory
- CVE-2026-85595 — Traefik before v2.11.55 and v3.0.0 through v3.7.10 Authentication Bypass via digestAuth
- CVE-2026-42018 — Anonymous user token generation exposure in JFrog Artifactory
- CVE-2026-68569 — Apache Tomcat: Principal lookup can fail open in some cases
- CVE-2026-19977 — EFM ipTIME A3004T Session Validation httpcon_check_session_url improper authentication
- CVE-2026-59500 — Priority - CWE-287: Improper Authentication
- CVE-2026-82695 — Tenda AC18 Telnet telnet missing authentication
- CVE-2026-82694 — Tenda AC1206 Web UI ate R7WebsSecurityHandler missing authentication