Executive brief
Dagu affected by unauthenticated RCE via inline DAG spec in default configuration
Affected products
- Go github.com/dagu-org/dagu
Junglewise Threat Intelligence
Severity: low · CVSS 3.1 · Published 2026-02-19
Technologies: github.com/dagu-org/dagu (Go). Vendors: Go.
Dagu affected by unauthenticated RCE via inline DAG spec in default configuration