CVE MEDIUM CVE-2026-47395

PraisonAI CLI automatically resolves @url mentions in prompt text and

CVSS 5.5 PraisonAI View details
CVE MEDIUM CVE-2026-46678

Pydantic AI: SSRF cloud-metadata blocklist bypass via IPv4-mapped IPv6 (Incomplete

CVSS 6.8 pydantic-ai-slim View details
CVE MEDIUM CVE-2026-46341

Apify Model Context Protocol (MCP) server: Domain Allowlist Bypass in

CVSS 6.1 @apify/actors-mcp-server View details

OpenClaw: Agent gateway config mutations could change protected operator settings

OpenClaw: CDP /json/version WebSocket URL could pivot to untrusted second

OpenClaw: Browser press/type interaction routes missed complete navigation guard coverage

CVE MEDIUM CVE-2026-6011

OpenClaw vulnerable to SSRF in src/agents/tools/web-fetch.ts

CVSS 5.6 openclaw View details

TaskWeaver has Protection Mechanism Failure and Server-Side Request Forgery (SSRF

CVSS 6.5 agentos-taskweaver View details
CVE MEDIUM CVE-2025-68477

Langflow is a tool for building and deploying AI-powered

CVSS 6.5 langflow View details
Paper 2512.14860v1

Penetration Testing of Agentic AI: A Comparative Security Analysis Across Models and Frameworks

system and 13 distinct attack scenarios that span prompt injection, Server Side Request Forgery (SSRF), SQL injection, and tool misuse. Our 130 total test cases reveal significant security disparities: AutoGen

medium relevance tool
Previous Page 3 of 3