CWE-396 · 2 records
Declaration of Catch for Generic Exception
CVEs in this class
2 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
29Monitor | CVE-2026-40149No exploit | PraisonAI has an Unauthenticated Allow-List Manipulation Bypasses Agent Tool Approval Safety Controlspraison · praisonai · CWE-396 | High7.3 | — | 0.2% | Apr 9, 2026 |
26Monitor | CVE-2026-27482No exploit | Ray: Dashboard DELETE endpoints allow unauthenticated browser-triggered DoS (Serve shutdown / job deletion)anyscale · ray · CWE-396 | Medium6.5 | — | 0.4% | Feb 21, 2026 |
- CVE-2026-4014929Monitor
PraisonAI has an Unauthenticated Allow-List Manipulation Bypasses Agent Tool Approval Safety Controls
HighCVSS 7.3No exploitEPSS 0%praison · praisonaiApr 9, 2026
- CVE-2026-2748226Monitor
Ray: Dashboard DELETE endpoints allow unauthenticated browser-triggered DoS (Serve shutdown / job deletion)
MediumCVSS 6.5No exploitEPSS 0%anyscale · rayFeb 21, 2026