WebSocket Access Vulnerability in Dokploy Platform as a Service
CVE-2026-72883
8.8HIGH
What is CVE-2026-72883?
A security weakness in Dokploy allows authenticated organization members to exploit WebSocket handlers, leading to unauthorized root terminal access. This flaw enables users to read logs and statistics for restricted servers and services without proper checks on service access. The issue has been addressed in version 0.29.13, which enforces necessary access controls to secure organizational data.
Affected Version(s)
dokploy < 0.29.13
