CVE-2025-29266 Information

Description

Unraid 7.0.0 before 7.0.1 allows remote users to access the Unraid WebGUI and web console as root without authentication if a container is running in Host networking mode with Use Tailscale enabled.

Reference

https://docs.unraid.net/unraid-os/release-notes/7.0.1/ https://edac.dev/security/CVE-2025-29266/ https://github.com/unraid/webgui

Share on: