PT-2026-22382 · Beszel · Beszel

Nekros1Xx

·

Publicado

2026-02-27

·

Atualizado

2026-03-25

·

CVE-2026-27734

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Beszel versions prior to 0.18.2 Beszel versions 0.18.2 through 0.18.3
Description Beszel is a server monitoring platform. The platform’s authenticated API endpoints, specifically ''/api/beszel/containers/logs'' and ''/api/beszel/containers/info'', pass the container query parameter to the agent without proper validation. The agent then uses this parameter to construct Docker Engine API URLs using fmt.Sprintf instead of url.PathEscape. Because Go’s http.Client does not sanitize ../ sequences in URL paths sent over unix sockets, an authenticated user, even with a readonly role, can potentially traverse to arbitrary Docker API endpoints on the agent hosts. This could expose sensitive infrastructure details.
Recommendations Update Beszel to version 0.18.4 or later. Update Beszel to version 0.18.4 or later.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-27734
GHSA-PHWH-4F42-GWF3
GO-2026-4571
SUSE-SU-2026:1042-1

Produtos afetados

Beszel