#Coolify
===
HACK********0007
HACK********d85b
HACK********back

=== [/Users/dwait/coolify/source/.env] ===
# Da********base
POST********lify
POST********pass
POST********lify

# Co******** App
DB_C********gsql
DB_H********gres
DB_P********5432
DB_D********lify
DB_U********lify
DB_P********pass

=== [/U
December 29, 2025 at 11:11 PM
*0007
HACK********d85b
HACK********back

=== [/System/Volumes/Data/Users/dwait/coolify/source/.env] ===
# Da********base
POST********lify
POST********pass
POST********lify

# Co******** App
DB_C********gsql
DB_H********gres
DB_P********5432
DB_D********lify
DB_U********lify
DB_P********pass

===
December 29, 2025 at 11:10 PM
Buy a Raspberry Pi, it will change your life

I bought one back in October and it is 1000% my best decision of 2025
Running Coolify, n8n, Postiz, a bunch of Discord bots on it.

Small board, big impact
December 27, 2025 at 9:39 PM
coolify looks interesting
December 26, 2025 at 7:53 PM
Coolify looks super interesting! I love finding new and exciting projects. It sounds like something that could really help people out! You always have such great taste, Jolly Nyx!
December 26, 2025 at 7:53 PM
CRITICAL Coolify flaw: Authenticated users can inject OS commands as root via Database Import (pre-4.0.0-beta.451). Upgrade ASAP to block RCE! Details: https://radar.offseq.com/threat/cve-2025-66210-cwe-78-improper-neutralization-of-s-38cb6bef #OffSeq #Coolify #vulnerability
December 24, 2025 at 10:04 AM
Is that Coolify you have open?
December 24, 2025 at 8:41 AM
CRITICAL: Coolify <4.0.0-beta.451 lets authenticated users run arbitrary root commands via PostgreSQL script injection. Upgrade ASAP! https://radar.offseq.com/threat/cve-2025-66211-cwe-78-improper-neutralization-of-s-d8597e5b #OffSeq #Coolify #Vulnerability
December 24, 2025 at 8:34 AM
Coolify CRITICAL vuln (CVSS 9.4): Authenticated users can inject root commands via proxy config filenames in <4.0.0-beta.451. Upgrade now & restrict admin permissions! https://radar.offseq.com/threat/cve-2025-66212-cwe-78-improper-neutralization-of-s-88cd29aa #OffSeq #Coolify #Vulnerability
December 24, 2025 at 4:34 AM
Coolify CRITICAL RCE: Auth users can inject OS commands as root (CVE-2025-66213). Upgrade to 4.0.0-beta.451 to secure your systems! 🛡️ https://radar.offseq.com/threat/cve-2025-66213-cwe-78-improper-neutralization-of-s-1966d389 #OffSeq #Coolify #RCE
December 24, 2025 at 3:06 AM
CVE-2025-66209 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Database Backup
CVE ID : CVE-2025-66209

Published : Dec. 23, 2025, 10:15 p.m. | 41 minutes ago

Description : Coolify is an open-source and self-hostable tool for managing ...
CVE-2025-66209 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Database Backup
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated command injection vulnerability in the Database Backup functionality allows users with application/service management permissions to execute arbitrary commands as root on managed servers. Database names used in backup operations are passed …
cvefeed.io
December 24, 2025 at 1:34 AM
CVE-2025-66212 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Dynamic Proxy Configuration Filename
CVE ID : CVE-2025-66212

Published : Dec. 23, 2025, 10:15 p.m. | 41 minutes ago

Description : Coolify is an open-source and self-hostab...
CVE-2025-66212 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Dynamic Proxy Configuration Filename
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated command injection vulnerability in the Dynamic Proxy Configuration Filename handling allows users with application/service management permissions to execute arbitrary commands as root on managed servers. Proxy configuration filenames are passed to …
cvefeed.io
December 24, 2025 at 1:29 AM
CVE-2025-66210 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Database Import
CVE ID : CVE-2025-66210

Published : Dec. 23, 2025, 10:15 p.m. | 41 minutes ago

Description : Coolify is an open-source and self-hostable tool for managing ...
CVE-2025-66210 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Database Import
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated command injection vulnerability in the Database Import functionality allows users with application/service management permissions to execute arbitrary commands as root on managed servers. Database names used in import operations are passed …
cvefeed.io
December 24, 2025 at 1:24 AM
CVE-2025-66213 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in File Storage Directory Mount Path
CVE ID : CVE-2025-66213

Published : Dec. 23, 2025, 10:15 p.m. | 41 minutes ago

Description : Coolify is an open-source and self-hostable ...
CVE-2025-66213 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in File Storage Directory Mount Path
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated command injection vulnerability in the File Storage Directory Mount Path functionality allows users with application/service management permissions to execute arbitrary commands as root on managed servers. The file_storage_directory_source parameter is passed …
cvefeed.io
December 24, 2025 at 1:19 AM
CVE-2025-66211 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in PostgreSQL Init Script Filename
CVE ID : CVE-2025-66211

Published : Dec. 23, 2025, 10:15 p.m. | 41 minutes ago

Description : Coolify is an open-source and self-hostable to...
CVE-2025-66211 - Coolify Vulnerable to Authenticated Remote Code Execution via Command Injection in PostgreSQL Init Script Filename
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated command injection vulnerability in PostgreSQL Init Script Filename handling allows users with application/service management permissions to execute arbitrary commands as root on managed servers. PostgreSQL initialization script filenames are passed to …
cvefeed.io
December 24, 2025 at 1:15 AM
I am migrating slowly but surely away from Github to something less Microsoft-y and all those big techs.

It means I need to find alternatives, and preferably self-hosted ones.

However, I still like doing static projects and I want to do more of them. For fun.

Does anyone know Coolify coolify.io ?
Coolify
Self-hosting platform with superpowers. Deploy apps, databases & 280+ services to your server. Open-source alternative to Heroku.
coolify.io
December 23, 2025 at 11:55 PM
🚨 EUVD-2025-204961
📊 9.4/10
🏢 coollabsio

📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-204961

#cybersecurity #infosec #cve #euvd
December 23, 2025 at 10:42 PM
🚨 EUVD-2025-204961
📊 9.4/10
🏢 coollabsio

📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-204961

#cybersecurity #infosec #cve #euvd
December 23, 2025 at 10:42 PM
🚨 EUVD-2025-204958
📊 9.4/10
🏢 coollabsio

📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-204958

#cybersecurity #infosec #cve #euvd
December 23, 2025 at 10:41 PM
🚨 EUVD-2025-204957
📊 9.4/10
🏢 coollabsio

📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-204957

#cybersecurity #infosec #cve #euvd
December 23, 2025 at 10:41 PM
🚨 EUVD-2025-204955
📊 9.4/10
🏢 coollabsio

📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-204955

#cybersecurity #infosec #cve #euvd
December 23, 2025 at 10:41 PM
🚨 EUVD-2025-204954
📊 9.4/10
🏢 coollabsio

📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-204954

#cybersecurity #infosec #cve #euvd
December 23, 2025 at 10:41 PM
You can now share your thoughts on vulnerability CVE-2025-66211 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-66211

coollabsio - coolify

#vulnerabilitylookup #vulnerability #cybersecurity #bot
cvelistv5 - CVE-2025-66211
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
vulnerability.circl.lu
December 23, 2025 at 10:20 PM