NVD Vulnerability Detail
Search Exploit, PoC
CVE-2026-33590
Summary

Insecure default settings of Portainer CE grant regular (non-admin) users privileges that allow host filesystem access and host-level code execution. An authenticated non-administrative user with endpoint access can exploit these settings to read host files or obtain root equivalent

access on the host.

Publication Date May 29, 2026, 5:16 a.m.
Registration Date May 30, 2026, 4:11 a.m.
Last Update May 30, 2026, 12:06 a.m.
Related information, measures and tools
Common Vulnerabilities List