All vulnerabilities
CRITICALSupply chain

GHSA-F38V-77QJ-H4JQ

pip · praisonai-platform

Summary

praisonai-platform 0.1.4 still boots on the hardcoded JWT secret dev-secret-change-me (default-open production guard)

References