CVE-2026-72739
MEDIUM
NVD
CVSS Score
6.5
Severity
MEDIUM
Published
Aug 10, 2026
Vendor
unknown
Description
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the createCommand() function constructs shell commands by interpolating compose service names and configuration into bash command strings. When a compose with a maliciously crafted name or service definition is deployed, the shell metacharacters are interpreted as command separators, allowing arbitrary command execution on the Docker host. This vulnerability is fixed in 0.29.13.