CVE-2026-47752: CWE-1336: Improper Neutralization of Special Elements Used in a Template Engine in Quenary tugtainer
Tugtainer is a self-hosted app for automating updates of Docker containers. Versions prior to 1.30.2 are vulnerable to Server-Side Template Injection (SSTI) in the notification template feature. The `title_template` and `body_template` fields are rendered using an unsandboxed `jinja2.Environment`, allowing any authenticated user to execute arbitrary OS commands as root inside the container. Version 1.30.2 fixes the issue.
AI Analysis
Technical Summary
CVE-2026-47752 affects Tugtainer, a self-hosted app for automating Docker container updates. Versions before 1.30.2 use an unsandboxed jinja2.Environment to render notification templates, specifically the title_template and body_template fields. This improper neutralization of special elements in the template engine (CWE-1336) enables authenticated users to perform Server-Side Template Injection (SSTI), resulting in arbitrary OS command execution with root privileges inside the container. The vulnerability is fixed in version 1.30.2.
Potential Impact
An authenticated user can exploit this vulnerability to execute arbitrary operating system commands with root privileges inside the container running Tugtainer. This can lead to full compromise of the container environment, potentially affecting confidentiality, integrity, and availability of the system managed by Tugtainer.
Mitigation Recommendations
Upgrade Tugtainer to version 1.30.2 or later, where this vulnerability is fixed. No other official remediation or temporary fixes are documented. Until upgrading, restrict access to authenticated users and consider limiting template editing capabilities to trusted personnel only.
CVE-2026-47752: CWE-1336: Improper Neutralization of Special Elements Used in a Template Engine in Quenary tugtainer
Description
Tugtainer is a self-hosted app for automating updates of Docker containers. Versions prior to 1.30.2 are vulnerable to Server-Side Template Injection (SSTI) in the notification template feature. The `title_template` and `body_template` fields are rendered using an unsandboxed `jinja2.Environment`, allowing any authenticated user to execute arbitrary OS commands as root inside the container. Version 1.30.2 fixes the issue.
CVSS v3.1
Score 9.9critical
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-47752 affects Tugtainer, a self-hosted app for automating Docker container updates. Versions before 1.30.2 use an unsandboxed jinja2.Environment to render notification templates, specifically the title_template and body_template fields. This improper neutralization of special elements in the template engine (CWE-1336) enables authenticated users to perform Server-Side Template Injection (SSTI), resulting in arbitrary OS command execution with root privileges inside the container. The vulnerability is fixed in version 1.30.2.
Potential Impact
An authenticated user can exploit this vulnerability to execute arbitrary operating system commands with root privileges inside the container running Tugtainer. This can lead to full compromise of the container environment, potentially affecting confidentiality, integrity, and availability of the system managed by Tugtainer.
Mitigation Recommendations
Upgrade Tugtainer to version 1.30.2 or later, where this vulnerability is fixed. No other official remediation or temporary fixes are documented. Until upgrading, restrict access to authenticated users and consider limiting template editing capabilities to trusted personnel only.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- GitHub_M
- Date Reserved
- 2026-05-19T22:16:39.505Z
- Cvss Version
- 3.1
- State
- PUBLISHED
- Remediation Level
- null
Threat ID: 6a624de29c2644c7f86dab89
Added to database: 07/23/2026, 17:22:42 UTC
Last enriched: 07/23/2026, 17:37:26 UTC
Last updated: 07/23/2026, 18:58:07 UTC
Views: 5
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.