CVE-2026-40158: PraisonAI Vulnerable to Code Injection and Protection Mechanism Failure
PraisonAI’s AST-based Python sandbox can be bypassed using type.__getattribute__ trampoline, allowing arbitrary code execution when running untrusted agent code.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-40158 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →