What is CVE-2026-69096?
CVE-2026-69096 is an OS command injection vulnerability in OpenWrt's luci-app-dockerman. It affects LuCI master and openwrt-25.12 snapshots with the ucode docker_rpc.uc backend, where broad ubus access to docker.* / docker.container.* is exposed. Updating to the latest patched version is strongly recommended.
Azərbaycanca: CVE-2026-69096 OpenWrt-in luci-app-dockerman paketində OS command injection zəifliyidir. Bu, docker_rpc.uc RPC backend-də geniş ubus icazələri səbəbindən docker.* / docker.container.*-ə giriş imkanı yaradır. Təsirə məruz qalmamaq üçün paketin son versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-78
FAQ2
In which OpenWrt package was CVE-2026-69096 discovered?
CVE-2026-69096 was discovered in OpenWrt's luci-app-dockerman package.
What is recommended to protect against CVE-2026-69096?
To protect against CVE-2026-69096, it is recommended to update the luci-app-dockerman package to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.