Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 07 Sep 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Powerjob
Powerjob powerjob |
|
| Vendors & Products |
Powerjob
Powerjob powerjob |
Fri, 04 Sep 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated HTTP Endpoint Enabling Remote Code Execution in PowerJob Worker |
Fri, 04 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-306 | |
| Metrics |
ssvc
|
Fri, 04 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PowerJob Worker version 5.1.2 (and likely earlier versions) exposes the /worker/deployContainer HTTP endpoint without authentication on the default transport port. This allows a remote attacker to execute arbitrary code. | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-09-04T18:23:16.021Z
Reserved: 2026-08-17T00:00:00.000Z
Link: CVE-2026-75430
Updated: 2026-09-04T18:23:12.214Z
Status : Deferred
Published: 2026-09-04T17:16:57.767
Modified: 2026-09-08T19:42:20.313
Link: CVE-2026-75430
No data.
OpenCVE Enrichment
Updated: 2026-09-07T08:28:12Z