Octopus Deploy Server
Last updated
Octopus Deploy makes it easy to automate your deployments and operations runbooks from a single place, helping you ship code faster, improve reliability, and break down dev & ops silos.
Install with winget
$ winget install --id OctopusDeploy.Server --exact --version 2025.3.14327Run in Command Prompt, PowerShell, or Windows Terminal. Prompts for any agreements.
Silent install command for Octopus Deploy Server
Octopus Deploy Server uses MSI (WiX). The silent install switches are /quiet /norestart.
msiexec.exe /i Octopus.2025.3.14327-x64.msi /quiet /norestart
See the full silent install reference for Octopus Deploy Server →
For Intune admins
Stop chasing app updates. Pckgr patches them for you.
Automated application patching for Microsoft Intune. Pckgr keeps a curated library of 1,000+ apps continuously up-to-date in your tenant via Microsoft Graph - no manual repackaging, no chasing vendor sites.
Start free 30-day trialNo credit card required.
Installers · v2025.3.14327
| Architecture | Type | Scope | Install | Download |
|---|---|---|---|---|
| x64 | MSI WiX | machine | Direct |
Copy a command tailored to that specific architecture, type, and scope - useful when winget would otherwise pick a different default.
Security
25 known CVEs via NVD
- medium4.3Fix in v2025.3.14731CVE-2026-3237affects before 2025.3.14731, 2025.4.10359, 2026.1.5571Mar 16, 2026
In affected versions of Octopus Server it was possible for a low privileged user to manipulate an API request to change the signing key expiration and revocation time frames via an API endpoint that had incorrect permission validation. It was not possible to expose the signing k...
In affected versions of Octopus Server it was possible to create a new API key from an existing access token resulting in the new API key having a lifetime exceeding the original API key used to mint the access token.
In affected version of Octopus Deploy it was possible to remove files and/or contents of files on the host using an API endpoint. The field lacked validation which could potentially result in ways to circumvent expected workflows.
In affected Microsoft Windows versions of Octopus Deploy, the server can be coerced into sending server-side requests that contain authentication material allowing a suitably positioned attacker to compromise the account running Octopus Server and potentially the host infrastruc...
In affected versions of Octopus Server it was possible for a user with sufficient access to set custom headers in all server responses. By submitting a specifically crafted referrer header the user could ensure that all subsequent server responses would return 500 errors renderi...
In affected versions of Octopus Deploy it was possible to upload files to unexpected locations on the host using an API endpoint. The field lacked validation which could potentially result in ways to circumvent expected workflows.
In affected versions of Octopus Server error messages were handled unsafely on the error page. If an adversary could control any part of the error message they could embed code which may impact the user viewing the error message.
In affected versions of Octopus Server the preview import feature could be leveraged to identify the existence of a target file. This could provide an adversary with information that may aid in further attacks against the server.
See a CVE that affects your fleet? Push the patched version to Intune in one click with Pckgr - automated patching is the only way to keep up.
Related apps
More from Octopus Deploy Pty. Ltd. or browse build, deploy, devops.
Frequently asked questions
How do I install Octopus Deploy Server on Windows?
How do I install Octopus Deploy Server silently for unattended deployment?
What are the silent install switches for Octopus Deploy Server?
How do I uninstall Octopus Deploy Server via winget?
Is Octopus Deploy Server free?
Does Octopus Deploy Server work on Windows 10?
How do I keep Octopus Deploy Server up to date?
Recent versions
- 2025.3.14327latest
- 2025.3.14320
- 2025.3.14311
- 2025.3.14302
- 2025.3.14292
- 2025.3.14287
- 2025.3.14283
- 2025.3.14271
- 2025.2.13082
- 2025.2.13071