CVE Explorer
CVE-2026-33590
Insecure default settings of Portainer CE grant regular (non-admin) users privileges that allow host filesystem access and host-level code execution. An authenticated non-administrative user with endpoint access can exploit these settings to read host files or obtain root equivalent
access on the host.
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","product":"Portainer Community Edition","vendor":"Portainer","versions":[{"lessThan":"2.39.0","status":"affected","version":"0","versionType":"semver"},{"lessThan":"2.38.0","status":"affected","version":"0","versionType":"semver"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"NETWORK","baseScore":8.5,"baseSeverity":"HIGH","exploitMaturity":"PROOF_OF_CONCEPT","privilegesRequired":"LOW","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"HIGH","subConfidentialityImpact":"HIGH","subIntegrityImpact":"HIGH","userInteraction":"PASSIVE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P","version":"4.0","vulnAvailabilityImpact":"HIGH","vulnConfidentiali…
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-276","description":"CWE-276 Incorrect default permissions","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/cna/problemTypes/0/descriptions/0
Source references
4 source assertions{"url":"http://www.openwall.com/lists/oss-security/2026/06/12/2"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/adp/1/references/0
{"tags":["issue-tracking"],"url":"https://github.com/portainer/portainer/commit/3e2fdb1891e81a8e4c5c8beb60e45f07c8ecae52"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/cna/references/2
{"tags":["issue-tracking"],"url":"https://github.com/portainer/portainer/commit/ac8fa7672e732b44b970c9eaf928eddd2c68796c"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/cna/references/1
{"tags":["third-party-advisory"],"url":"https://intwave.com/blog/2026/02/26/improving-portainer-security.html"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:e87a6f47a160f9362780e8d361c6ab7e2c8b77ceb4b707a2879d174cef365a2e · sha256:65a0281810981f25… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.