What is CVE-2026-12702?
Affected versions of Octopus Deploy contain insufficient checks on project trigger actions, allowing an unauthorized user to trigger a deployment. Users should update to the latest patched version.
Azərbaycanca: Octopus Deploy-un təsirlənən versiyalarında layihə trigger əməliyyatları üzərində yetərsiz yoxlamalar aşkarlanıb. Bu zəiflik icazəsiz istifadəçiyə deployment-i işə salmağa imkan verir. Mütəxəssislər proqramı ən son versiyaya yeniləməyi tövsiyə edir.
Related CVEs
link basis: same weakness class CWE-862
FAQ1
What does CVE-2026-12702 allow in Octopus Deploy?
This vulnerability allows an unauthorized user to trigger a deployment due to insufficient checks on project trigger actions.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.