CVE-2025-53376 | dokploy up to 0.23.6 tRPC Procedure appName os command injection (GHSA-m486-7pmj-8cmv)
A vulnerability was found in dokploy up to 0.23.6. It has been classified as critical. The impacted element is an unknown function of the component tRPC Procedure. Performing manipulation of the argument appName results in os command injection.
This vulnerability is identified as CVE-2025-53376. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.