CVE-2026-57139 | MervinPraison PraisonAI up to 1.7.1 MCP Server server.ts MCPServer.startHttp improper authorization
A vulnerability has been found in MervinPraison PraisonAI up to 1.7.1 and classified as critical. The affected element is the function MCPServer.startHttp of the file src/praisonai-ts/src/mcp/server.ts of the component MCP Server. This manipulation causes improper authorization.
This vulnerability appears as CVE-2026-57139. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.VulDB Recent EntriesRead More