A vulnerability labeled as very critical has been found in Dokploy up to 0.29.12. Affected by this issue is some unknown functionality of the file apps/dokploy/server/api/routers/registry.ts of the component Registry. The manipulation of the argument Password results in os command injection.
This vulnerability is cataloged as CVE-2026-72902. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.