CVE-2023-36457: FIT2CLOUD 1panel
High severity, CVSS 8.8. EPSS: 2.3% chance of exploitation in the next 30 days.
1Panel is an open source Linux server operation and maintenance management panel. Prior to version 1.3.6, an authenticated attacker can craft a malicious payload to achieve command injection when adding container repositories. The vulnerability has been fixed in v1.3.6.
Affected products
- FIT2CLOUD 1panel: before 1.3.6 (fixed in 1.3.6)
Published 2023-07-05. Last modified 2026-06-17.