CVE-2026-47413

PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Versions prior to 0.1.4 have aprivilege escalation / cross-tenant member injection. The `POST /workspaces/{workspace_id}/members` endpoint is gated only by `require_workspace_member(workspace_id)` (default `min_role="member"`) and forwards the request body's `user_id` and `role` straight into `MemberService.add(workspace_id, user_id, role)`, which has no caller-permission check. A user with the lowest workspace privilege can add any user (including a new attacker-controlled second account, or an existing account they want to grief) as owner of the workspace. PraisonAI Platform version 0.1.4 patches the issue.
Configurations

No configuration.

History

22 Jul 2026, 15:17

Type Values Removed Values Added
References () https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-8g2p-pqm3-fcfh - () https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-8g2p-pqm3-fcfh -

21 Jul 2026, 18:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-21 18:17

Updated : 2026-07-22 15:17


NVD link : CVE-2026-47413

Mitre link : CVE-2026-47413

CVE.ORG link : CVE-2026-47413


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management

CWE-862

Missing Authorization