Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-91778

UNKNOWN NVD
CVSS Score 0
Severity UNKNOWN
Published Sep 15, 2026
Vendor unknown

Description

In affected versions of Octopus Server, users with certain scoped permission sets could execute arbitrary scripts on a worker (including the Octopus Server built-in worker). Incorrect permission validation during script execution would allow the script to execute without the user possessing the required authorisation.

References