Man-in-the-Middle Vulnerability in CentralDogma Server by LINE
CVE-2026-11745
8.8HIGH
What is CVE-2026-11745?
A vulnerability exists in the CentralDogma Server where the Git mirror SSH client fails to verify host keys for git+ssh:// connections. This oversight allows an attacker to intercept communications during a connection, making it feasible for them to execute man-in-the-middle attacks, potentially leading to the compromise of mirrored repositories. Users running versions prior to 0.84.0 should take appropriate security measures to mitigate risks associated with this vulnerability.
Affected Version(s)
Central Dogma 0.84.0
