{"id":"CVE-2026-93425","published":"2026-09-24T16:17:25.990","lastModified":"2026-09-24T18:19:07.280","description":"Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the patch.readRepoDirectories tRPC procedure passes the user-controlled repoPath value from apps/dokploy/server/api/routers/patch.ts into a shell command in packages/server/src/services/patch-repo.ts without safe argument quoting. An authenticated organization member with service:read permission can inject shell metacharacters into repoPath and execute arbitrary commands through child_process.exec as root in the Dokploy container. The supplied service identifier is used only to resolve the server and does not constrain repoPath. Because the standard deployment mounts /var/run/docker.sock, container-root command execution can be used to control Docker and compromise the host and its managed applications. This issue is fixed in version 0.29.13.","cvssScore":9.9,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-78"],"vendors":[],"products":[],"references":[{"url":"https://github.com/Dokploy/dokploy/commit/16b5b7293f9883327a89c69fcb6e5718767b064a","tags":[]},{"url":"https://github.com/Dokploy/dokploy/releases/tag/v0.29.13","tags":[]},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-56g6-wjr4-5q7p","tags":[]},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-56g6-wjr4-5q7p","tags":[]}],"exploitRefs":[{"url":"https://github.com/Dokploy/dokploy/commit/16b5b7293f9883327a89c69fcb6e5718767b064a","tags":[]},{"url":"https://github.com/Dokploy/dokploy/releases/tag/v0.29.13","tags":[]},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-56g6-wjr4-5q7p","tags":[]},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-56g6-wjr4-5q7p","tags":[]}],"hasPoc":true,"ai":{"summary":"The flaw allows an authenticated organization member to inject shell metacharacters into the repoPath parameter, executing arbitrary commands as root within the Dokploy container. This can lead to full host compromise.","exploitability":"Exploitation is relatively straightforward for an attacker with service:read permission. The attacker must first authenticate and then craft a malicious repoPath value.","blast_radius":"If exploited, the attacker can gain root access to the host and potentially compromise other managed applications, leading to significant damage.","remediation":"Upgrade to version 0.29.13 or later.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","auth-bypass","shell-injection","poc"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-27T08:48:40.895Z"}}