Critical severity9.8NVD Advisory· Published Sep 4, 2026
CVE-2026-75430
CVE-2026-75430
Description
PowerJob Worker version 5.1.2 (and likely earlier versions) exposes the /worker/deployContainer HTTP endpoint without authentication on the default transport port. This allows a remote attacker to execute arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
4- gist.github.com/unpredictable21/fcb62d394db30525412c4b5b1efd0233nvd
- github.com/PowerJob/PowerJob/blob/master/SECURITY.mdnvd
- github.com/PowerJob/PowerJob/blob/master/powerjob-worker/src/main/java/tech/powerjob/worker/actors/WorkerActor.javanvd
- github.com/PowerJob/PowerJob/blob/master/powerjob-worker/src/main/java/tech/powerjob/worker/container/OmsContainerFactory.javanvd
News mentions
0No linked articles in our index yet.