CVE-2026-72876 | Dokploy up to 0.29.12 Swarm Router swarm.ts swarm.getNodeInfo serverId privileges management

SecurityVulns

A vulnerability classified as very critical was found in Dokploy up to 0.29.12. Affected is the function swarm.getNodeInfo of the file apps/dokploy/server/api/routers/swarm.ts of the component Swarm Router. The manipulation of the argument serverId results in improper privilege management.

This vulnerability is known as CVE-2026-72876. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More