CyberRota Analysis
AI-GeneratedCoolify versions prior to 4.0.0-beta.474 are vulnerable due to insufficient path restrictions in the PostgreSQL initialization script, allowing authenticated users to write files outside the intended directory. This flaw can lead to unauthorized command execution, posing a significant risk to system integrity and security. Organizations using affected versions should prioritize upgrading to the fixed version to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.474, PostgreSQL initialization script (generate_init_scripts() method in app/Actions/Database/StartPostgresql.php) filename handling did not sufficiently restrict paths, allowing an authenticated user to write files outside the intended directory and achieve command execution through database initialization. This issue is fixed in version 4.0.0-beta.474.