GHSA-7f5m-mqg8-7jjgHigh

In affected versions of Octopus Server, a user with permission to modify non built-in external...

Published
September 16, 2026
Last Modified
September 16, 2026

🔗 CVE IDs covered (1)

📋 Description

In affected versions of Octopus Server, a user with permission to modify non built-in external feeds could exploit a path traversal flaw to overwrite arbitrary files on the server, which in some configurations could lead to remote code execution.

🔗 References (3)