CVE-2026-72867 | Dokploy up to 0.29.12 Git Provider Branch compose.ts input validation

SecurityVulns

A vulnerability has been found in Dokploy up to 0.29.12 and classified as critical. Affected is an unknown function of the file packages/server/src/db/schema/compose.ts of the component Git Provider Branch Handler. This manipulation of the argument customGitBranch/branch/gitlabBranch/bitbucketBranch/giteaBranch causes improper input validation.

The identification of this vulnerability is CVE-2026-72867. It is possible to initiate the attack remotely. There is no exploit available.

The affected component should be upgraded.VulDB Recent EntriesRead More