CVE-2026-15734
N/A
N/A
Summary
A Server-Side Template Injection (SSTI) vulnerability in WGDashboard version 4.3.2 and earlier, allows authenticated attackers to execute arbitrary code as root.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| WGDashboard | WGDashboard | 0 <= 4.3.2 | affected |
Weaknesses
- CWE-1336: Improper Neutralization of Special Elements Used in a Template Engine
References
- https://github.com/Stuub/WGDashboard-v4.3.2-SSTI-to-Root-RCE-PoC
- https://github.com/WGDashboard/WGDashboard
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.