---
id: GHSA-4mp6-8448-9vgv
title: >-
  Duplicate Advisory: PraisonAI: AgentMail webhook lacks signature verification,
  allowing unauthenticated message injection and sender spoofing
summary: >-
  Duplicate Advisory: PraisonAI: AgentMail webhook lacks signature verification,
  allowing unauthenticated message injection and sender spoofing
severity: medium
cvss: 7.3
cwe:
  - CWE-290
vendor: praisonai
product: praisonai
ecosystem: pip
affected:
  - praisonai <= 4.6.77
published: '2026-07-11'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T14:06:51Z'
source: GHSA
sourceUrl: 'https://github.com/advisories/GHSA-4mp6-8448-9vgv'
references:
  - url: >-
      https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qj9c-59p6-8cgx
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-61428'
  - url: >-
      https://www.vulncheck.com/advisories/praisonai-agentmail-before-message-injection-via-webhook
  - url: 'https://github.com/advisories/GHSA-4mp6-8448-9vgv'
tags:
  - ghsa
  - pip
ingestedAt: '2026-10-07T14:33:21.958Z'
---

## Overview

### Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-qj9c-59p6-8cgx. This link is maintained to preserve external references.

### Original Description
PraisonAI AgentMail versions before 4.6.78 lack signature verification in webhook mode, allowing unauthenticated attackers to inject messages with spoofed sender addresses. Attackers can POST crafted message.received events to the webhook endpoint to inject arbitrary content into the agent and trigger replies to attacker-controlled addresses, bypassing sender allow/block lists.

## Affected packages

- `praisonai <= 4.6.77`

## Remediation

Refer to the advisory for the patched release.
