CVE-2026-60089 | MervinPraison PraisonAI up to 1.6.77 Config File .praisonai/config.toml agent.start output_file path traversal

SecurityVulns

A vulnerability labeled as problematic has been found in MervinPraison PraisonAI up to 1.6.77. This affects the function agent.start of the file .praisonai/config.toml of the component Config File Handler. Executing a manipulation of the argument output_file can lead to path traversal.

This vulnerability is handled as CVE-2026-60089. It is possible to launch the attack on the local host. There is not any exploit available.VulDB Recent EntriesRead More