CVE-2026-72884 | Dokploy up to 0.29.12 Command Sanitization compose.ts sanitizeCommand command os command injection

SecurityVulns

A vulnerability was found in Dokploy up to 0.29.12. It has been classified as very critical. The impacted element is the function sanitizeCommand of the file packages/server/src/utils/builders/compose.ts of the component Command Sanitization. This manipulation of the argument command causes os command injection.

The identification of this vulnerability is CVE-2026-72884. It is possible to initiate the attack remotely. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More