CVE-2025-59156 | coollabsio coolify up to 4.0.0-beta.420.6 os command injection (GHSA-h5xw-7xvp-xrxr / WID-SEC-2026-0031)
A vulnerability labeled as critical has been found in coollabsio coolify up to 4.0.0-beta.420.6. Affected is an unknown function. Executing a manipulation can lead to os command injection.
This vulnerability is registered as CVE-2025-59156. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.