A vulnerability identified as very critical has been detected in Dokploy up to 0.29.12. Affected is an unknown function of the file mariadb.ts. Performing a manipulation of the argument dockerImage results in os command injection.

This vulnerability is reported as CVE-2026-72862. The attack is possible to be carried out remotely. No exploit exists.

You should upgrade the affected component.