CVE-2026-35202EPSS p26.5%

CVE-2026-35202CVE-2026-35202

Description

Pterodactyl is a free, open-source game server management panel. Prior to version 1.12.3, the Pterodactyl Client API has a logic flaw that lets users bypass their assigned limits for database allocations. This happens because the database locking mechanism used in the controllers is totally broken and doesn't actually lock anything. Version 1.12.3 patches the issue.

Scoring

EPSS0.35% probability of exploitation · percentile 26.5% · 2026-06-19T12:03:05Z
Last modified2026-06-04

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-49132
CVE
CVE-2026-26016
CVE
CVE-2026-34358
CVE
CVE-2026-6473
CVE
CVE-2026-2005
CVE
CVE-2026-2004
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.