Known Vulnerabilities for Dokploy by Dokploy
Listed below are 10 of the newest known vulnerabilities associated with "Dokploy" by "Dokploy".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-47174 json | In Duck Site before version 1.0.1, the repository has a deploy workflow that runs after the build workflow completes. The bui... | Not Provided | 2026-06-11 | 2026-06-11 |
| CVE-2026-45663 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.1 and earlier, a command injection vulnerability exist... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-45662 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.0 and earlier, the deleteRegistry function in Dokploy ... | Not Provided | 2026-05-29 | 2026-06-02 |
| CVE-2026-45661 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.26.5 and earlier, a critical path traversal vulnerability... | Not Provided | 2026-05-29 | 2026-06-02 |
| CVE-2026-45633 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.26.6 and earlier, Dokploy contains a command injection vu... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-45632 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.26.7 and earlier, the schedule router does not enforce or... | Not Provided | 2026-05-29 | 2026-06-02 |
| CVE-2026-45631 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). From 0.27.0 to before 0.29.3, a hardcoded BETTER_AUTH_SECRET f... | Not Provided | 2026-05-29 | 2026-06-01 |
| CVE-2026-45630 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.28.8 and earlier, authenticated OS command injection in t... | Not Provided | 2026-05-29 | 2026-06-01 |
| CVE-2026-45629 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.28.8 and earlier, authenticated OS command injection in t... | Not Provided | 2026-05-29 | 2026-06-02 |
| CVE-2026-45628 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.2 and earlier, Dokploy constructs shell commands using... | Not Provided | 2026-05-29 | 2026-05-29 |