CRITICAL 9.9 CVE-2026-82954 Published 31 Aug 2026

Dokploy Path Traversal Vulnerability

Worried this affects one of your servers?

A critical vulnerability has been discovered in Dokploy versions up to 0.29.7.

The issue lies in the writeTraefikConfigInPath function of the Settings component in the file packages/server/src/utils/traefik/application.ts, which is susceptible to path traversal attacks.

This vulnerability can be exploited remotely, and an exploit is already publicly available.

Reference: CVE-2026-82954 on NVD

← Back to Security News