PraisonAI Vulnerable to Stored XSS via Unsanitized Agent Output in HTML Rendering (nh3 Not a Required Dependency)
Moderate severity
GitHub Reviewed
Published
Apr 9, 2026
in
MervinPraison/PraisonAI
•
Updated Apr 10, 2026
Give feedback on Dependabot alerts