📦 Panel

by Pterodactyl

🔍 What is Panel?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-26016

HIGH CVSS 8.1 Feb 19, 2026

CVE-2026-26016 is an authorization bypass vulnerability in Pterodactyl Panel's Wings control plane that allows any authenticated Wings node to access and manipulate servers belonging to other nodes. T...

CVE-2025-69198

MEDIUM CVSS 6.5 Jan 19, 2026

This CVE describes a race condition vulnerability in Pterodactyl Panel where concurrent requests can bypass resource limits. Malicious users can create more databases, port allocations, or backups tha...

CVE-2025-68954

MEDIUM CVSS 5.4 Jan 6, 2026

This vulnerability in Pterodactyl allows users who were actively connected via SFTP to retain file access even after their permissions are revoked. It affects administrators who manage game servers us...

CVE-2025-69197

MEDIUM CVSS 6.5 Jan 6, 2026

This vulnerability in Pterodactyl allows attackers to reuse intercepted TOTP 2FA tokens within their 60-second validity window. Users with 2FA enabled are affected, as an attacker who captures a valid...

CVE-2024-34067

MEDIUM CVSS 6.1 May 3, 2024

This vulnerability in Pterodactyl Panel allows cross-site scripting (XSS) attacks when administrators import malicious eggs or access compromised wings instances. Attackers could potentially gain admi...