npm PraisonAI MCPSecurity Basic/OAuth authentication policies accept invalid credentials without validation
Modified: 6/18/2026
package
pkg:npm/praisonai
npm PraisonAI MCPSecurity Basic/OAuth authentication policies accept invalid credentials without validation
Modified: 6/18/2026
npm PraisonAI utility shell safe-command wrapper allowlist bypass via shell chaining
Modified: 6/18/2026
npm PraisonAI AgentOS exposes unauthenticated agent listing and invocation
Modified: 6/18/2026
npm PraisonAI SandboxExecutor network-isolated mode does not block non-proxy-aware network clients
Modified: 6/18/2026
npm PraisonAI AgentLoop onToolCall approval runs after tool execution
Modified: 6/18/2026
npm PraisonAI MCPServer exposes unauthenticated HTTP tools/call
Modified: 6/18/2026
PraisonAI: Remote Code Execution via Sandbox Escape in `codeMode` Tool
Modified: 6/18/2026
npm PraisonAI SandboxExecutor allowedCommands bypass via shell chaining
Modified: 6/18/2026
npm PraisonAI codeMode sandbox escape via Function constructor
Modified: 6/18/2026