CVE-2026-57146 is an authentication flaw in PraisonAI A2U affecting deployments started with the documented praisonai serve a2u command. An incomplete prior fix leaves A2U subscription and event-related routes unauthenticated by default unless the A2U_AUTH_TOKEN environment variable is explicitly configured. As a result, a reachable A2U server may permit unauthenticated access to A2U information and event-stream functionality. The issue stems from missing authentication enforcement on exposed A2U routes rather than a credential bypass after successful login.
Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.
What an attacker gets, and what they’ve been doing with it.
If you can’t patch tonight, do this now.
A2U_AUTH_TOKEN before startup so authentication is required on A2U routes. Additional network-layer access controls such as reverse-proxy authentication, firewall restrictions, or VPN-only exposure can further reduce risk.Patch, then assume compromise.
praisonai to version 4.6.61 or later. After upgrading, verify that A2U authentication is enforced by default and confirm that unauthenticated requests to A2U subscription and related routes are rejected with an authorization error. Review deployment configuration to ensure authentication settings are consistently applied across all A2U startup methods.No public exploits tracked yet. Mallory keeps watching.
No public exploit code observed for this vulnerability.
Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.
Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.
No public activity tracked yet. Mallory keeps watching.
No public activity observed for this vulnerability.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.