← Database

CVE-2026-53553

HIGH CVSS: 7.7 Published: 2026-08-31 Modified: 2026-08-31

Description

Goploy is an open-source automation deployment system. Prior to version 1.18.0, a severe path traversal vulnerability exists in its backend API endpoints, specifically /deploy/fileDiff (File Compare), when handling file paths provided by the client. This issue has been patched in version 1.18.0.

Affected Platforms

Unknown

Weakness Type

CWE-22, CWE-200

References