B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-45405 - Dokku: Arbitrary File Write via Tar Symlink Traversal in git:from-archive and certs:add

CVE ID :CVE-2026-45405 Published : June 26, 2026, 4:23 p.m. | 4 hours, 48 minutes ago Description :Dokku is a docker-powered PaaS. Prior to 0.38.2, the git:from-archive and certs:add commands extract user-supplied tar/zip archives into temporary directories without sanitizing member paths or...

Original-Artikel öffnen Zurück zur Übersicht