CVE-2026-33590EPSS p41.8%
CVE-2026-33590CVE-2026-33590
Description
Insecure default settings of Portainer CE grant regular (non-admin) users privileges that allow host filesystem access and host-level code execution. An authenticated non-administrative user with endpoint access can exploit these settings to read host files or obtain root equivalent
access on the host.
Scoring
| EPSS | 0.51% probability of exploitation · percentile 41.8% · 2026-10-06T12:00:23Z |
| Last modified | 2026-06-12 |