praisonaiagents@1.6.13

Praison AI agents for completing complex tasks with Self Reflection Agents

  • latest version

    1.6.167

  • latest non vulnerable version

  • first published

    1 years ago

  • latest version published

    16 hours ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the praisonaiagents package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Incorrect Authorization

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Incorrect Authorization via the tool approval process. An attacker can perform unauthorized actions by reusing an initial approval for a benign operation to execute dangerous file write operations with unreviewed parameters in the same session.

    How to fix Incorrect Authorization?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Directory Traversal

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Directory Traversal via the run_skill_script function. An attacker can execute arbitrary scripts from any location on the filesystem by supplying absolute file paths, bypassing intended directory restrictions.

    How to fix Directory Traversal?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Arbitrary Code Injection

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Arbitrary Code Injection via the plugin manager process. An attacker can execute arbitrary code by placing a malicious .py file in the plugin directories, which are loaded without code signing, integrity verification, or sandboxing.

    How to fix Arbitrary Code Injection?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the web_crawl process. An attacker can access internal HTTP response bodies from private or loopback services by exploiting DNS rebinding to bypass hostname validation.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Improper Check for Dropped Privileges

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Improper Check for Dropped Privileges due to the lack of enforcement of security restrictions in the Subprocess Sandbox backend, including blocked_commands, blocked_paths, blocked_imports, allow_subprocess, and allow_file_write. An attacker can execute arbitrary subprocess commands, access sensitive files, and perform unauthorized operations by bypassing intended security policies.

    How to fix Improper Check for Dropped Privileges?

    Upgrade praisonaiagents to version 1.6.81 or higher.

    [,1.6.81)
    • C
    Arbitrary Code Injection

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Arbitrary Code Injection via the CodeAgent._execute_python function. An attacker can execute arbitrary code and exfiltrate environment secrets by influencing LLM output through prompt injection.

    How to fix Arbitrary Code Injection?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the Crawl4AI backend process. An attacker can access internal network resources and sensitive information by crafting URLs that exploit DNS rebinding and HTTP redirects, causing the headless browser to follow redirects to internal services.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Protection Mechanism Failure

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Protection Mechanism Failure in the AgentFlow._resolve_pydantic_class process. An attacker can execute arbitrary Python code with the privileges of the workflow runner by supplying a malicious workflow file and a sibling tools.py file, which are then imported unsafely when the workflow is executed via WorkflowManager or after load_yaml.

    How to fix Protection Mechanism Failure?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • M
    Directory Traversal

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Directory Traversal via the agent.start process. An attacker can overwrite files outside the intended project directory by supplying a malicious .praisonai/config.toml file that sets the output_file path to an absolute or directory traversal value, causing the application to write output to arbitrary locations with the privileges of the user running the process.

    How to fix Directory Traversal?

    Upgrade praisonaiagents to version 1.6.78 or higher.

    [,1.6.78)
    • H
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the SpiderTools._validate_url process, which fails to resolve DNS hostnames before validation. An attacker can access internal or sensitive network resources by supplying a crafted URL whose DNS A/AAAA record points to an internal, loopback, or cloud-metadata address, thereby bypassing intended network restrictions.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • M
    Missing Authentication for Critical Function

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Missing Authentication for Critical Function via the publish endpoint, which processes POST requests without validating authentication tokens. An attacker can inject arbitrary events into the server-sent events stream and leak server configuration details by sending crafted requests to the exposed endpoints.

    How to fix Missing Authentication for Critical Function?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • H
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the searxng_url parameter in the search_web and searxng_search functions. An attacker can cause the server to make arbitrary HTTP requests to internal or external endpoints and retrieve sensitive information by supplying a crafted URL, potentially exposing internal services, APIs, or cloud metadata. This is only exploitable if an agent ingests attacker-controlled content, such as web pages, files, or tool output, which can trigger the vulnerable function through prompt injection.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.62 or higher.

    [,1.6.62)
    • H
    Protection Mechanism Failure

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Protection Mechanism Failure in the execute_code process. An attacker can access sensitive internal attributes by crafting payloads that assemble blocklisted attribute names at runtime and leveraging str.format to bypass Python-level attribute access controls. This allows reading of restricted attributes such as __class__, __qualname__, and others, even when they are intended to be blocked.

    How to fix Protection Mechanism Failure?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • C
    Missing Authorization

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Missing Authorization via the AgentTeam.launch process. An attacker can enumerate available agents, invoke agent actions, trigger side effects, and potentially access sensitive information by sending unauthenticated HTTP requests to the exposed endpoints.

    How to fix Missing Authorization?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • H
    Arbitrary Command Injection

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Arbitrary Command Injection via unsanitized input in the search_emails, reply_email, and archive_email functions. An attacker can execute arbitrary IMAP commands, exfiltrate email data, terminate IMAP connections, or delete emails by supplying crafted input parameters that break out of quoted string contexts in IMAP commands. This is only exploitable if the environment is configured with valid email credentials (EMAIL_ADDRESS and EMAIL_PASSWORD environment variables set).

    How to fix Arbitrary Command Injection?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • H
    Directory Traversal

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Directory Traversal via the MentionsParser process when handling @file: mentions in agent prompts. An attacker can access arbitrary files on the filesystem that are readable by the process user by injecting specially crafted file paths, including absolute paths or those containing directory traversal sequences, into agent instructions or user messages.

    How to fix Directory Traversal?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • C
    Binding to an Unrestricted IP Address

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Binding to an Unrestricted IP Address via the run_sse process, which binds to all network interfaces without authentication or Origin validation. An attacker can execute arbitrary registered tools, potentially leading to remote code execution, by sending crafted HTTP requests to the exposed endpoints or leveraging DNS rebinding attacks from a victim's browser.

    How to fix Binding to an Unrestricted IP Address?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • H
    Missing Authorization

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Missing Authorization through the run_sse process. An attacker can gain unauthorized access to registered tools and interact with them by leveraging DNS rebinding and sending crafted requests with attacker-controlled Host and Origin headers. This can result in exposure, modification, or disruption of local or internal resources accessible by the exposed tools. This is only exploitable if a user starts a local or internal legacy SSE MCP server and visits a malicious website.

    How to fix Missing Authorization?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [0.6.0,1.6.59)
    • H
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the scrape_page process. An attacker can access internal network resources and read sensitive information by supplying a crafted URL that redirects to restricted destinations such as loopback or private addresses.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • C
    Incorrect Authorization

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Incorrect Authorization via the submit_job process. An attacker can execute arbitrary OS commands on the server by submitting a crafted YAML payload to the unauthenticated API endpoint, which leverages the approve field to bypass approval checks and invoke dangerous functionality.

    How to fix Incorrect Authorization?

    Upgrade praisonaiagents to version 1.6.59 or higher.

    [,1.6.59)
    • M
    Exposure of Sensitive System Information to an Unauthorized Control Sphere

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Exposure of Sensitive System Information to an Unauthorized Control Sphere via the direct-prompt CLI. An attacker can access sensitive local HTTP resources by crafting prompt text containing @url: mentions that reference loopback or private network addresses, causing the system to fetch and inject the response body into the model prompt context.

    How to fix Exposure of Sensitive System Information to an Unauthorized Control Sphere?

    Upgrade praisonaiagents to version 1.6.40 or higher.

    [,1.6.40)
    • M
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via improper URL validation the spider_tools component. An attacker can access internal loopback-only HTTP services by supplying specially crafted URLs that use alternate encodings of loopback addresses, bypassing insufficient validation checks.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.40 or higher.

    [,1.6.40)
    • M
    Protection Mechanism Failure

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Protection Mechanism Failure in the execute_code() function. An attacker can achieve arbitrary command execution on the host system by leveraging access to print.__self__ to retrieve the real builtins module, extracting sensitive functions such as __import__ through dynamic attribute access and runtime string construction, and bypassing AST-based security checks. This allows reading and writing files, exfiltrating environment variables, and executing further malicious actions.

    How to fix Protection Mechanism Failure?

    Upgrade praisonaiagents to version 1.6.40 or higher.

    [,1.6.40)
    • H
    Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') in the ToolExecutionMixin.execute_tool process. An attacker can execute arbitrary callables defined in the __main__ module by supplying crafted tool-call names that are not declared in the tool list or registry.

    How to fix Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')?

    Upgrade praisonaiagents to version 1.6.37 or higher.

    [,1.6.37)
    • H
    Server-side Request Forgery (SSRF)

    praisonaiagents is a Praison AI agents for completing complex tasks with Self Reflection Agents

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) due to the _validate_url() function usage of urlparse() that treats \ as regular character when extracting host from a URL before validation. An attacker can access internal network resources by crafting a specially formatted URL (e.g. http://127.0.0.1:6666\@1.1.1.1) that bypasses host validation and is interpreted differently by the request handling logic.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade praisonaiagents to version 1.6.32 or higher.

    [,1.6.32)