PraisonAI Has SSRF in FileTools.download_file() via Unvalidated

CVSS 8.6 praisonaiagents View details

PraisonAI: SSRF via Unvalidated api_base in passthrough() Fallback

CVSS 7.7 praisonai View details

Fickling has a detection bypass via stdlib network-protocol constructors

TaskWeaver has Protection Mechanism Failure and Server-Side Request Forgery (SSRF

CVSS 6.5 agentos-taskweaver View details

picklescan has Arbitrary file read using `io.FileIO`

picklescan View details
CVE MEDIUM CVE-2025-68477

Langflow is a tool for building and deploying AI-powered

CVSS 6.5 langflow View details
Paper 2512.14860v1

Penetration Testing of Agentic AI: A Comparative Security Analysis Across Models and Frameworks

system and 13 distinct attack scenarios that span prompt injection, Server Side Request Forgery (SSRF), SQL injection, and tool misuse. Our 130 total test cases reveal significant security disparities: AutoGen

medium relevance tool
Previous Page 5 of 5