Security Advisory

CVE-2026-32718

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-06 21:04:59
Last updated 2026-07-07 14:01:24
Assigner GitHub_M
CVSS score 6.5
State PUBLISHED

Description

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.466, mutating API validation endpoints are guarded by read ability, allowing read-scoped API tokens to perform state-changing operations such as validating cloud tokens and servers. This issue is fixed in version 4.0.0-beta.466.