MikeTrendsTrends right now

search

Tugtainer

Trends

  1. 1
    Critical vulnerability CVE-2026-62308 disclosed in Tugtainer▼🚨 CVE-2026-62308 — CVSS 9.1 CRITICAL Tugtainer is a self-hosted app for automating updates of Docker containers. Prior tMmastodonTechnologyCybersecurity05 d ago

    A critical vulnerability, CVE-2026-62308 with a CVSS score of 9.1, has been disclosed in Tugtainer, a self-hosted application for automating Docker container updates. Versions prior to 1.30.6 allow an authenticated user to make the backend server send outbound HTTP requests to arbitrary user-supplied URLs, a server-side request forgery flaw. Admins running affected versions are urged to update to 1.30.6 or later.

  2. 2
    Critical vulnerability disclosed in Docker update tool Tugtainer▼🚨 CVE-2026-55494 — CVSS 9.8 CRITICAL Tugtainer is a self-hosted app for automating updates of Docker containers. Prior tMmastodonTechnologyCybersecurity05 d ago

    A critical flaw, CVE-2026-55494 with a CVSS score of 9.8, has been disclosed in Tugtainer, a self-hosted application for automating Docker container updates. Versions before 1.30.4 expose unauthenticated access to Docker management APIs when the AGENT_SECRET setting is not configured. Self-hosting and security communities are urging users to update immediately, warning that unpatched instances could let attackers take control of containers.

  3. 3
    Critical vulnerability found in Docker update tool Tugtainer●🚨 CVE-2026-55181 — CVSS 9.4 CRITICAL Tugtainer is a self-hosted app for automating updates of Docker containers. Prior tMmastodonTechnologyCybersecurity05 d ago

    A critical vulnerability, CVE-2026-55181 with a CVSS score of 9.4, has been disclosed in Tugtainer, a self-hosted application used to automate updates of Docker containers. Versions before 1.30.3 allow OIDC authentication to be initiated even when OIDC is disabled, potentially letting attackers bypass authentication. Administrators are urged to upgrade to version 1.30.3 or later.