Impact
PraisonAI does not validate file path references in custom command command The result is disclosure of any process‑readable file the attacker can reference, increasing the risk of sensitive data exposure. The weakness is classified as CWE‑22 Path Traversal.
Affected Systems
The vulnerability affects MervinPraison’s PraisonAI for all releases before version 4.6.78. Version 4.6.78 and later incorporate a fix that enforces proper path validation for custom commands.
Risk and Exploitability
The CVSS score of 6.8 indicates moderate severity. The EPSS score is <1%, indicating a very low probability of exploitation. The issue is not listed in the CISA KEV catalog, implying no widespread exploitation has been documented. Attackers require the ability to inject or modify custom command templates to exploit a remote file‑disclosure vulnerability that can be carried out if custom commands are accepted without strict path checks. The likelihood of exploitation is limited to environments that permit user‑defined command templates and lack rigorous path validation.
OpenCVE Enrichment