<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 06:44:52 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-367932</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-367932</link>
      <description>EUVD-2026-367932</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-367932</guid>
    </item>
    <item>
      <title>fkie_cve-2026-57128</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-57128</link>
      <description>&lt;p&gt;PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.58, the SSE server in src/praisonai-agents/praisonaiagents/server/server.py does not consult ServerConfig.auth_token before handling /publish, /events, or /info requests. A network client that can reach the server can broadcast arbitrary events to connected clients and obtain server configuration and client-count information. This issue is fixed in praisonaiagents 1.6.58.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.58, the SSE server in src/praisonai-agents/praisonaiagents/server/server.py does not consult ServerConfig.auth_token before handling /publish, /events, or /info requests. A network client that can reach the server can broadcast arbitrary events to connected clients and obtain server configuration and client-count information. This issue is fixed in praisonaiagents 1.6.58.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-57128</guid>
    </item>
    <item>
      <title>GHSA-35w5-pcw4-jx94 — PraisonAI: Unauthenticated Event Injection via SSE `/publish` Endpoint</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-35w5-pcw4-jx94</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: praisonaiagents&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The SSE (Server-Sent Events) server in `src/praisonai-agents/praisonaiagents/server/server.py` exposes a `/publish` endpoint that broadcasts arbitrary messages to all connected clients without any authentication. The `ServerConfig` dataclass (line 24) defines an `auth_token` field, but this token is never validated in the `/publish` or `/events` request handlers. Any attacker with access to the SSE server port can inject arbitrary events into the SSE stream visible to all connected clients, or use `/info` to leak server configuration including connected client count.&lt;/p&gt;
&lt;p&gt;## Details&lt;/p&gt;
&lt;p&gt;**Vulnerable code (lines 164–180):**
```python
async def publish(request):
    try:
        data = await request.json()
        event_type = data.get(&amp;#34;type&amp;#34;, &amp;#34;message&amp;#34;)
        event_data = data.get(&amp;#34;data&amp;#34;, {})&lt;/p&gt;
&lt;p&gt;self.broadcast(event_type, event_data)&lt;/p&gt;
&lt;p&gt;return JSONResponse({
            &amp;#34;success&amp;#34;: True,
            &amp;#34;clients&amp;#34;: len(self._clients),
        })
```&lt;/p&gt;
&lt;p&gt;The `auth_token` field in `ServerConfig` (line 31):
```python
@dataclass
class ServerConfig:
    ...
    auth_token: Optional[str] = None
```&lt;/p&gt;
&lt;p&gt;This `auth_token` is **never referenced** in any request handler. The `/publish` endpoint processes any POST request regardless of authentication headers. The `/info` endpoint (line 182) also has no auth and returns server configuration including `self.config.to_dict()`.&lt;/p&gt;
&lt;p&gt;**Routes registration (lines 190–194):**
```python
routes = [
    Route(&amp;#34;/health&amp;#34;, health, methods=[&amp;#34;GET&amp;#34;]…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: praisonaiagents&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The SSE (Server-Sent Events) server in `src/praisonai-agents/praisonaiagents/server/server.py` exposes a `/publish` endpoint that broadcasts arbitrary messages to all connected clients without any authentication. The `ServerConfig` dataclass (line 24) defines an `auth_token` field, but this token is never validated in the `/publish` or `/events` request handlers. Any attacker with access to the SSE server port can inject arbitrary events into the SSE stream visible to all connected clients, or use `/info` to leak server configuration including connected client count.&lt;/p&gt;
&lt;p&gt;## Details&lt;/p&gt;
&lt;p&gt;**Vulnerable code (lines 164–180):**
```python
async def publish(request):
    try:
        data = await request.json()
        event_type = data.get(&amp;#34;type&amp;#34;, &amp;#34;message&amp;#34;)
        event_data = data.get(&amp;#34;data&amp;#34;, {})&lt;/p&gt;
&lt;p&gt;self.broadcast(event_type, event_data)&lt;/p&gt;
&lt;p&gt;return JSONResponse({
            &amp;#34;success&amp;#34;: True,
            &amp;#34;clients&amp;#34;: len(self._clients),
        })
```&lt;/p&gt;
&lt;p&gt;The `auth_token` field in `ServerConfig` (line 31):
```python
@dataclass
class ServerConfig:
    ...
    auth_token: Optional[str] = None
```&lt;/p&gt;
&lt;p&gt;This `auth_token` is **never referenced** in any request handler. The `/publish` endpoint processes any POST request regardless of authentication headers. The `/info` endpoint (line 182) also has no auth and returns server configuration including `self.config.to_dict()`.&lt;/p&gt;
&lt;p&gt;**Routes registration (lines 190–194):**
```python
routes = [
    Route(&amp;#34;/health&amp;#34;, health, methods=[&amp;#34;GET&amp;#34;]…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-35w5-pcw4-jx94</guid>
    </item>
    <item>
      <title>PYSEC-2026-3528 — PraisonAI: Unauthenticated Event Injection via SSE `/publish` Endpoint</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2026-3528</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: praisonaiagents&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The SSE (Server-Sent Events) server in `src/praisonai-agents/praisonaiagents/server/server.py` exposes a `/publish` endpoint that broadcasts arbitrary messages to all connected clients without any authentication. The `ServerConfig` dataclass (line 24) defines an `auth_token` field, but this token is never validated in the `/publish` or `/events` request handlers. Any attacker with access to the SSE server port can inject arbitrary events into the SSE stream visible to all connected clients, or use `/info` to leak server configuration including connected client count.&lt;/p&gt;
&lt;p&gt;## Details&lt;/p&gt;
&lt;p&gt;**Vulnerable code (lines 164–180):**
```python
async def publish(request):
    try:
        data = await request.json()
        event_type = data.get(&amp;#34;type&amp;#34;, &amp;#34;message&amp;#34;)
        event_data = data.get(&amp;#34;data&amp;#34;, {})&lt;/p&gt;
&lt;p&gt;self.broadcast(event_type, event_data)&lt;/p&gt;
&lt;p&gt;return JSONResponse({
            &amp;#34;success&amp;#34;: True,
            &amp;#34;clients&amp;#34;: len(self._clients),
        })
```&lt;/p&gt;
&lt;p&gt;The `auth_token` field in `ServerConfig` (line 31):
```python
@dataclass
class ServerConfig:
    ...
    auth_token: Optional[str] = None
```&lt;/p&gt;
&lt;p&gt;This `auth_token` is **never referenced** in any request handler. The `/publish` endpoint processes any POST request regardless of authentication headers. The `/info` endpoint (line 182) also has no auth and returns server configuration including `self.config.to_dict()`.&lt;/p&gt;
&lt;p&gt;**Routes registration (lines 190–194):**
```python
routes = [
    Route(&amp;#34;/health&amp;#34;, health, methods=[&amp;#34;GET&amp;#34;]…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: praisonaiagents&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The SSE (Server-Sent Events) server in `src/praisonai-agents/praisonaiagents/server/server.py` exposes a `/publish` endpoint that broadcasts arbitrary messages to all connected clients without any authentication. The `ServerConfig` dataclass (line 24) defines an `auth_token` field, but this token is never validated in the `/publish` or `/events` request handlers. Any attacker with access to the SSE server port can inject arbitrary events into the SSE stream visible to all connected clients, or use `/info` to leak server configuration including connected client count.&lt;/p&gt;
&lt;p&gt;## Details&lt;/p&gt;
&lt;p&gt;**Vulnerable code (lines 164–180):**
```python
async def publish(request):
    try:
        data = await request.json()
        event_type = data.get(&amp;#34;type&amp;#34;, &amp;#34;message&amp;#34;)
        event_data = data.get(&amp;#34;data&amp;#34;, {})&lt;/p&gt;
&lt;p&gt;self.broadcast(event_type, event_data)&lt;/p&gt;
&lt;p&gt;return JSONResponse({
            &amp;#34;success&amp;#34;: True,
            &amp;#34;clients&amp;#34;: len(self._clients),
        })
```&lt;/p&gt;
&lt;p&gt;The `auth_token` field in `ServerConfig` (line 31):
```python
@dataclass
class ServerConfig:
    ...
    auth_token: Optional[str] = None
```&lt;/p&gt;
&lt;p&gt;This `auth_token` is **never referenced** in any request handler. The `/publish` endpoint processes any POST request regardless of authentication headers. The `/info` endpoint (line 182) also has no auth and returns server configuration including `self.config.to_dict()`.&lt;/p&gt;
&lt;p&gt;**Routes registration (lines 190–194):**
```python
routes = [
    Route(&amp;#34;/health&amp;#34;, health, methods=[&amp;#34;GET&amp;#34;]…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2026-3528</guid>
    </item>
  </channel>
</rss>
