Unrated severityNVD Advisory· Published Feb 25, 2026· Updated Feb 27, 2026
CVE-2026-0704
CVE-2026-0704
Description
In affected version of Octopus Deploy it was possible to remove files and/or contents of files on the host using an API endpoint. The field lacked validation which could potentially result in ways to circumvent expected workflows.
Affected products
2- Octopus Deploy/Octopus Serverv5Range: 2023.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.