Filtered by vendor Vps.org Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-16503 1 Vps.org 1 Supabase Template 2026-08-02 N/A
Deployment of the VPS.org one-click Supabase template deploys a PostgreSQL instance that is published on all interfaces (0.0.0.0:5432) with a default database password set to "postgres". Because Docker installs its own iptables rules, this exposure bypasses a standard host UFW configuration.
CVE-2026-16504 1 Vps.org 1 Zulip Template 2026-08-02 N/A
Deployment of the VPS.org one-click Zulip template deploys a hardcoded application signing key, a default database password ("zulip"), and DISABLE_HTTPS=True.