CVE-2026-55538 | MervinPraison PraisonAI up to 4.6.57 Agent Execution _create_agents_app api_key/X-API-Key missing authentication

SecurityVulns

A vulnerability was found in MervinPraison PraisonAI up to 4.6.57. It has been declared as critical. The impacted element is the function _create_agents_app of the component Agent Execution. Such manipulation of the argument api_key/X-API-Key leads to missing authentication.

This vulnerability is uniquely identified as CVE-2026-55538. The attack can be launched remotely. No exploit exists.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More