CVE-2026-72739
- EPSS 0.45%
- Veröffentlicht 10.08.2026 18:18:52
- Zuletzt bearbeitet 10.08.2026 19:17:34
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the createCommand() function constructs shell commands by interpolating compose service names and configuration into bash command strings. When a compose with a maliciou...
CVE-2026-72738
- EPSS 0.52%
- Veröffentlicht 10.08.2026 17:49:44
- Zuletzt bearbeitet 10.08.2026 21:17:24
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the backup.listBackupFiles tRPC endpoint in apps/dokploy/server/api/routers/backup.ts passes the search parameter through normalizeS3Path and interpolates it into an rcl...
CVE-2026-72737
- EPSS 0.25%
- Veröffentlicht 10.08.2026 17:47:50
- Zuletzt bearbeitet 13.08.2026 16:19:02
Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.8 and earlier, backup.create, backup.update, and backup.restoreBackupWithLogs in apps/dokploy/server/api/routers/backup.ts accept a client-controlled destinationId and use the ref...
CVE-2026-72736
- EPSS 0.43%
- Veröffentlicht 10.08.2026 17:40:44
- Zuletzt bearbeitet 10.08.2026 18:18:52
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, Dokploy passes user-controlled values directly into shell commands via unquoted template literal interpolation in the registry credential testing and Docker Swarm cluste...
CVE-2026-72735
- EPSS 0.6%
- Veröffentlicht 10.08.2026 17:34:36
- Zuletzt bearbeitet 10.08.2026 19:17:33
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, writeTraefikConfigRemote in packages/server/src/utils/traefik/application.ts serializes user-controlled Traefik configuration with yaml.stringify and interpolates the re...
CVE-2026-72734
- EPSS 0.3%
- Veröffentlicht 10.08.2026 17:29:30
- Zuletzt bearbeitet 11.08.2026 03:18:01
Dokploy is a free, self-hostable Platform as a Service (PaaS). From 0.28.7 until 0.29.13, the server.remove tRPC mutation in apps/dokploy/server/api/routers/server.ts accepts a caller-controlled serverId and calls haveActiveServices, findServerById, ...
CVE-2026-72733
- EPSS 0.48%
- Veröffentlicht 10.08.2026 17:26:29
- Zuletzt bearbeitet 10.08.2026 21:17:24
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the backup.restoreBackupWithLogs tRPC subscription builds database restore shell pipelines from the user-controlled databaseName and backupFile fields without safely sep...
CVE-2026-45629
- EPSS 0.76%
- Veröffentlicht 29.05.2026 16:40:59
- Zuletzt bearbeitet 22.07.2026 06:10:00
Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.28.8 and earlier, authenticated OS command injection in the /listen-deployment WebSocket endpoint allows any organization member to execute arbitrary system commands on remote server...
CVE-2026-43917
- EPSS 0.23%
- Veröffentlicht 29.05.2026 16:40:05
- Zuletzt bearbeitet 21.07.2026 15:10:00
Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.19.0 and earlier, the protectedProcedure middleware only verifies the user is authenticated - it does NOT enforce organization scoping. Each endpoint must individually verify the res...
CVE-2026-45628
- EPSS 0.23%
- Veröffentlicht 29.05.2026 16:33:23
- Zuletzt bearbeitet 22.07.2026 06:10:00
Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.2 and earlier, Dokploy constructs shell commands using JavaScript template literals and executes them via child_process.exec() (which runs through /bin/sh -c). User-supplied branc...