Command Injection Vulnerability in Dokploy PaaS by Dokploy
CVE-2026-93425

9.9CRITICAL

Key Information:

Vendor

Dokploy

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-93425?

Dokploy is a user-friendly Platform as a Service (PaaS) solution that allows for flexible deployment. Prior to version 0.29.13, it contained a critical vulnerability in the patch.readRepoDirectories tRPC procedure. This flaw permitted authenticated users with specific permissions to inject shell metacharacters into the repoPath parameter used in a shell command. As a result, attackers could execute arbitrary commands with root privileges within the Dokploy container, accessing sensitive elements like the Docker socket to control host operations and compromise managed applications. This vulnerability has been addressed in version 0.29.13, emphasizing the importance of keeping software updated to safeguard against exploitation.

Affected Version(s)

dokploy < 0.29.13

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.