CVE-2026-57132 | MervinPraison PraisonAI up to 4.6.61 Agent Invoke Endpoint invoke verify_token PRAISONAI_CALL_AUTH improper authentication
A vulnerability, which was classified as critical, has been found in MervinPraison PraisonAI up to 4.6.61. Affected by this vulnerability is the function verify_token of the file /api/v1/agents/{id}/invoke of the component Agent Invoke Endpoint. This manipulation of the argument PRAISONAI_CALL_AUTH causes improper authentication.
The identification of this vulnerability is CVE-2026-57132. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More