Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-15733: WGDashboard 4.2.3 and earlier: Unauthenticated Root Access
CVE-2026-15733 · published 28 days ago
Summary
Authenticated users can execute commands with root privileges on vulnerable WGDashboard installations. This allows attackers to access sensitive data and take control of the system. Update to the latest version of WGDashboard to fix this vulnerability.
Original advisory text
A Remote Code Execution (RCE) vulnerability exist in WGDashboard version 4.2.3 and earlier. Multiple OS command injection allows authenticated attackers to execute arbitrary commands as root.
A Remote Code Execution (RCE) vulnerability exist in WGDashboard version 4.2.3 and earlier. Multiple OS command injection allows authenticated attackers to execute arbitrary commands as root.
Severity
9.8
Critical
CVSS 3.1: 9.8 (OSV)
Exploitation
EPSS 14%
Type
CWE-78OS Command Injection
Timeline
Published6 Aug 2026
Updated23 Aug 2026
First seen6 Aug 2026
Monitor software like this
Free during beta