A vulnerability classified as critical has been found in Dokploy up to 0.29.12. This vulnerability affects unknown code of the file packages/server/src/utils/providers/git.ts of the component Git Provider. This manipulation of the argument customGitUrl causes permission issues.
This vulnerability is handled as CVE-2026-72740. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.