CNNVD-202601-4839 Information

CNNVD ID

CNNVD-202601-4839

CVE-2026-24840

  • CNNVD Published: 2026-01-28

Description (Chinese)

Dokploy是Dokploy开源的一个开源软件。 Dokploy 0.26.6之前版本存在信任管理问题漏洞,该漏洞源于安装脚本中存在硬编码凭证,可能导致数据库凭据泄露。

Description (English)

Dokploy is an open source software for Dokploy open source. The previous version of Dokploy 0.26 had a trust management gap, which stemmed from the installation of hard-coded vouchers in scripts, which could lead to the release of the database.

Hazard Level

Medium

Vulnerability Type

信任管理问题

Affected Vendor

Dokploy

Published

2026-01-28

Last Modified

2026-02-24

References

https://github.com/Dokploy/dokploy/commit/b902c160a256ad345ac687c87eb092f1fab2c64d https://github.com/Dokploy/dokploy/security/advisories/GHSA-jr65-3j3w-gjmc

Patch

https://github.com/Dokploy/dokploy/releases

Share on: