CVE-2026-72737 | Dokploy up to 0.29.8 Backup backup.ts destinationId privileges management

SecurityVulns

A vulnerability was found in Dokploy up to 0.29.8. It has been classified as critical. The affected element is the function backup.create/backup.update/backup.restoreBackupWithLogs of the file apps/dokploy/server/api/routers/backup.ts of the component Backup. The manipulation of the argument destinationId leads to improper privilege management.

This vulnerability is listed as CVE-2026-72737. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More