WhisperX tag archive

#CWE-942

This page collects WhisperX intelligence signals tagged #CWE-942. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-09 06:27:10 · GitHub Issues

1. PraisonAI Codebase Exposes 3 Unpatched CORS Vulnerabilities (CWE-942) Post-Audit

A recent security audit of the PraisonAI codebase has left three critical CORS misconfiguration vulnerabilities unaddressed, flagged as a medium-high risk. These specific issues, categorized under CWE-942, involve the use of a wildcard origin (`allow_origins=["*"]`) in the CORS middleware setup. This configuration allo...