29 Total CVEs
28 AI Analyzed
0 CISA KEV
20 Critical
All Vendors
Showing 1-29 of 29 CVEs
CVE-2026-72902
Analyzed
9.9
Dokploy dokploy

Dokploy versions before 0.29.13 are vulnerable to OS command injection via the registry testing functions, allowing authenticated users to execute arb...

2026-08-11
CVE-2026-72886
Analyzed
9.9
Dokploy dokploy

An improper privilege management vulnerability in Dokploy allows authenticated users to escalate privileges and execute arbitrary scripts as root on t...

2026-08-11
CVE-2026-72884
Analyzed
8.7
Dokploy dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72883
Analyzed
8.8
Dokploy Dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72882
Analyzed
9.9
Dokploy dokploy

Dokploy versions 0.28.8 and earlier are vulnerable to OS command injection via the filePath parameter, allowing authenticated users to execute arbitra...

2026-08-11
CVE-2026-72880
Analyzed
9.9
Dokploy dokploy

Dokploy versions before 0.29.13 contain an arbitrary file write and deletion vulnerability due to improper input validation in the certificate managem...

2026-08-11
CVE-2026-72879
Analyzed
9.4
Dokploy dokploy

Dokploy versions prior to 0.29.8 are vulnerable to OS command injection via the getRegistryCommands function, allowing authenticated users to execute...

2026-08-11
CVE-2026-72878
Analyzed
9.6
Dokploy dokploy

Dokploy prior to 0.29.13 is vulnerable to OS command injection via the backup and restore pipeline, allowing authenticated admins to execute arbitrary...

2026-08-11
CVE-2026-72876
Analyzed
9.9
Dokploy dokploy

Dokploy versions before 0.29.13 contain an authorization bypass and OS command injection flaw, allowing authenticated users to manipulate server IDs a...

2026-08-11
CVE-2026-72875
Analyzed
8.8
Dokploy dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72874
Analyzed
8.7
Dokploy dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72872
Analyzed
9.9
Dokploy dokploy

Dokploy improperly validates Bitbucket repository fields, allowing authenticated users to inject arbitrary OS commands into git clone operations.

2026-08-11
CVE-2026-72871
Analyzed
7.5
Dokploy Dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72870
Analyzed
8.7
Dokploy dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72867
Analyzed
9.9
Dokploy dokploy

Dokploy versions 0.29.3 through 0.29.12 are susceptible to OS command injection due to insufficient server-side validation of git branch fields during...

2026-08-11
CVE-2026-72866
Analyzed
8.8
Dokploy dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72865
Analyzed
9.9
Dokploy dokploy

Dokploy versions prior to 0.29.13 contain an OS command injection vulnerability in the compose update process, allowing authenticated users to execute...

2026-08-11
CVE-2026-72740
Analyzed
9.9
Dokploy dokploy

An OS command injection vulnerability in Dokploy prior to 0.29.13 allows authenticated users with deployment permissions to execute arbitrary commands...

2026-08-11
CVE-2026-72738
Analyzed
9.9
Dokploy dokploy

An OS command injection vulnerability in the Dokploy backup endpoint allows authenticated users to execute arbitrary commands on the host server.

2026-08-11
CVE-2026-72737
Analyzed
9.6
Dokploy dokploy

A cross-tenant authorization bypass in Dokploy versions 0.29.8 and earlier allows authenticated users with backup permissions to access or poison back...

2026-08-11
CVE-2026-72735
Analyzed
9.9
Dokploy dokploy

An incomplete fix for a previous vulnerability allows authenticated users to perform OS command injection on remote servers managed by Dokploy through...

2026-08-11
CVE-2026-72734
Analyzed
8.4
Dokploy dokploy

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-08-11
CVE-2026-72733
Analyzed
9.9
Dokploy dokploy

Dokploy versions before 0.29.13 are vulnerable to OS command injection in the backup restore functionality, allowing authenticated users to execute ar...

2026-08-11
CVE-2026-45661
Analyzed
9.9
Dokploy PaaS

A path traversal vulnerability in Dokploy allows authenticated users to write arbitrary files to the host or remote servers during application deploym...

2026-05-30
CVE-2026-45632
Analyzed
9.9
Dokploy PaaS

A broken access control vulnerability in the Dokploy schedule router allows authenticated users to manage schedules belonging to other organizations,...

2026-05-30
CVE-2026-45631
Analyzed
10
Dokploy PaaS

A hardcoded authentication secret in Dokploy allows unauthenticated attackers to forge JWTs, gain administrative access, and execute commands on the h...

2026-05-30
CVE-2026-45629
Analyzed
9.9
Dokploy PaaS

An OS command injection vulnerability in the Dokploy /listen-deployment WebSocket endpoint allows authenticated users to execute arbitrary commands on...

2026-05-30
CVE-2026-27130
Analyzed
9.9
Dokploy Dokploy

Dokploy 0.26.6 and below contain an OS command injection vulnerability in the appName parameter, allowing authenticated attackers to execute arbitrary...

2026-05-19
CVE-2026-24840
8
Dokploy Multiple Products

Dokploy is a free, self-hostable Platform as a Service (PaaS)

2026-01-28