<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 13:05:32 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-368473</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-368473</link>
      <description>EUVD-2026-368473</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-368473</guid>
    </item>
    <item>
      <title>fkie_cve-2026-57134</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-57134</link>
      <description>&lt;p&gt;PraisonAI is a multi-agent teams system. From 1.5.1 until 1.7.2, MCPSecurity.evaluatePolicy() in src/praisonai-ts/src/mcp/security.ts invokes the configured credential validator only when AuthMethod is api-key or bearer. Basic and OAuth policies accept any non-empty Authorization header without calling auth.validate(), then return an authenticated result, allowing callers with invalid credentials to access MCP tools and resources protected by those policies. This issue is fixed in version 1.7.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PraisonAI is a multi-agent teams system. From 1.5.1 until 1.7.2, MCPSecurity.evaluatePolicy() in src/praisonai-ts/src/mcp/security.ts invokes the configured credential validator only when AuthMethod is api-key or bearer. Basic and OAuth policies accept any non-empty Authorization header without calling auth.validate(), then return an authenticated result, allowing callers with invalid credentials to access MCP tools and resources protected by those policies. This issue is fixed in version 1.7.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-57134</guid>
    </item>
    <item>
      <title>GHSA-4qq2-2j2x-x62c — npm PraisonAI MCPSecurity Basic/OAuth authentication policies accept invalid credentials without validation</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4qq2-2j2x-x62c</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: praisonai&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The published npm package `praisonai` exports an `MCPSecurity` helper described in source as:&lt;/p&gt;
&lt;p&gt;```text
MCP Security - Authentication, authorization, and rate limiting
Provides security policies for MCP servers.
```&lt;/p&gt;
&lt;p&gt;Its `AuthMethod` type advertises five authentication methods:&lt;/p&gt;
&lt;p&gt;```ts
export type AuthMethod = &amp;#39;none&amp;#39; | &amp;#39;api-key&amp;#39; | &amp;#39;bearer&amp;#39; | &amp;#39;basic&amp;#39; | &amp;#39;oauth&amp;#39;;
```&lt;/p&gt;
&lt;p&gt;The authentication-policy evaluator, however, only validates credentials for `api-key` and `bearer`:&lt;/p&gt;
&lt;p&gt;```ts
if (policy.auth.method === &amp;#39;api-key&amp;#39; || policy.auth.method === &amp;#39;bearer&amp;#39;) {
    const valid = policy.auth.validate
        ? await policy.auth.validate(token)
        : this.validateApiKey(token);&lt;/p&gt;
&lt;p&gt;if (!valid) {
        return { allowed: false, reason: &amp;#39;Invalid credentials&amp;#39; };
    }
}&lt;/p&gt;
&lt;p&gt;return { allowed: true, context: { authenticated: true } };
```&lt;/p&gt;
&lt;p&gt;For `basic` and `oauth`, any non-empty `Authorization` header skips the supplied `validate` callback and returns allowed. A local PoV configures `auth.validate` to always return `false`; invalid `api-key` and `bearer` credentials are rejected, while invalid `basic` and `oauth` credentials are accepted without calling the validator.&lt;/p&gt;
&lt;p&gt;This is a protection-mechanism failure in the exported npm MCP security helper. It is distinct from the separate issue that the npm `MCPServer` HTTP transport does not enforce authentication by default.&lt;/p&gt;
&lt;p&gt;## Technical Details&lt;/p&gt;
&lt;p&gt;`SecurityPolicy.auth` accepts both a method and a validator:&lt;/p&gt;
&lt;p&gt;```ts
auth?: { method: AuthMethod;…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: praisonai&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The published npm package `praisonai` exports an `MCPSecurity` helper described in source as:&lt;/p&gt;
&lt;p&gt;```text
MCP Security - Authentication, authorization, and rate limiting
Provides security policies for MCP servers.
```&lt;/p&gt;
&lt;p&gt;Its `AuthMethod` type advertises five authentication methods:&lt;/p&gt;
&lt;p&gt;```ts
export type AuthMethod = &amp;#39;none&amp;#39; | &amp;#39;api-key&amp;#39; | &amp;#39;bearer&amp;#39; | &amp;#39;basic&amp;#39; | &amp;#39;oauth&amp;#39;;
```&lt;/p&gt;
&lt;p&gt;The authentication-policy evaluator, however, only validates credentials for `api-key` and `bearer`:&lt;/p&gt;
&lt;p&gt;```ts
if (policy.auth.method === &amp;#39;api-key&amp;#39; || policy.auth.method === &amp;#39;bearer&amp;#39;) {
    const valid = policy.auth.validate
        ? await policy.auth.validate(token)
        : this.validateApiKey(token);&lt;/p&gt;
&lt;p&gt;if (!valid) {
        return { allowed: false, reason: &amp;#39;Invalid credentials&amp;#39; };
    }
}&lt;/p&gt;
&lt;p&gt;return { allowed: true, context: { authenticated: true } };
```&lt;/p&gt;
&lt;p&gt;For `basic` and `oauth`, any non-empty `Authorization` header skips the supplied `validate` callback and returns allowed. A local PoV configures `auth.validate` to always return `false`; invalid `api-key` and `bearer` credentials are rejected, while invalid `basic` and `oauth` credentials are accepted without calling the validator.&lt;/p&gt;
&lt;p&gt;This is a protection-mechanism failure in the exported npm MCP security helper. It is distinct from the separate issue that the npm `MCPServer` HTTP transport does not enforce authentication by default.&lt;/p&gt;
&lt;p&gt;## Technical Details&lt;/p&gt;
&lt;p&gt;`SecurityPolicy.auth` accepts both a method and a validator:&lt;/p&gt;
&lt;p&gt;```ts
auth?: { method: AuthMethod;…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4qq2-2j2x-x62c</guid>
    </item>
  </channel>
</rss>
