CVE-2026-82954 | Dokploy up to 0.29.7 Settings application.ts writeTraefikConfigInPath path path traversal

SecurityVulns

A vulnerability labeled as very critical has been found in Dokploy up to 0.29.7. This issue affects the function writeTraefikConfigInPath of the file packages/server/src/utils/traefik/application.ts of the component Settings. The manipulation of the argument path results in path traversal.

This vulnerability is reported as CVE-2026-82954. The attack can be launched remotely. Moreover, an exploit is present.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More