All vulnerabilities
CRITICALSupply chain

GHSA-x227-pf99-vffg

PyPI · praisonaiagents

Summary

PraisonAI: MCP SSE transport binds 0.0.0.0 with no authentication and no Origin validation; bundled SecurityConfig is never wired in

References