Security: pterodactyl/wings
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
Maliciously or erroneously created parsed config files can cause wings process to OOMGHSA-q6hh-gp44-4hcm published
Jun 15, 2026 by WilliamVennerModerate -
Maliciously crafted packet during SFTP connection handshake causes denial of serviceGHSA-ghrq-5wpp-hxx5 published
Jun 15, 2026 by WilliamVennerHigh -
Wings exposes node configuration secrets through egg configuration-file templatingGHSA-pfvc-3p5h-x7h6 published
Jun 12, 2026 by anthonyphysgunCritical -
Chmod operation can be used to change permissions of files outside of the server containerGHSA-rhq6-9rgh-v45c published
May 23, 2026 by DaneEverittModerate -
Endless reprocessing/reupload of activity log data due to SQLite max parameters limit not being consideredGHSA-2497-gp99-2m74 published
Jan 19, 2026 by anthonyphysgunHigh -
Arbitrary File Write/ReadGHSA-gqmf-jqgv-v8fw published
May 3, 2024 by matthewpiHigh -
Server-side Request Forgery during remote file pullGHSA-qq22-jj8x-4wwv published
May 3, 2024 by matthewpiModerate -
Symlink Race in Server FilesystemGHSA-494h-9924-xww9 published
Mar 13, 2024 by matthewpiCritical -
Escape to host from installation containerGHSA-p744-4q6p-hvc2 published
May 10, 2023 by matthewpiCritical -
Improper Link Resolution allowing the deletion of files and directories on the host systemGHSA-66p8-j459-rq63 published
Feb 8, 2023 by matthewpiCritical
Learn more about advisories related to pterodactyl/wings in the GitHub Advisory Database