CVEs we hold for Docker
Records whose assigning authority named Docker as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-8936Unbounded recursion in grpcfuse kernel module allows container to crash Docker Desktop VMDocker Desktop
CVE-2026-79994Docker Sandboxes UDS forwarder can reach arbitrary host Unix sockets through a symlink raceDocker Sandboxes
CVE-2026-77179Docker Sandboxes guest can write arbitrary macOS host files via a symlink in the virtio-fs stored-path fallbackDocker Sandboxes
CVE-2026-6406Docker Desktop Enhanced Container Isolation bypass via --use-api-socket CLI flagDocker Desktop
CVE-2026-5843Docker Model Runner container-to-host code execution via MLX-LM model_file importlib loadingDocker Desktop
CVE-2026-5817Docker Model Runner container-to-host code execution via unsandboxed trust_remote_code in Python inference backendsDocker Desktop
CVE-2026-55887MCP Gateway: Argument injection via OCI image label YAML in Docker MCP Gatewaydocker mcp-gateway
CVE-2026-33990Docker Model Runner OCI Registry Client Vulnerable to Server-Side Request Forgery (SSRF)docker model-runner
CVE-2026-28400Docker Model Runner Unauthenticated Runtime Flag Injection via _configure Endpointdocker model-runner
CVE-2026-18171Docker Sandboxes read-only runtime mount writable through its shared-export aliasDocker Sandboxes
CVE-2026-12039Docker Sandboxes network egress allowlist bypass via unfiltered DNS resolutionDocker Sandboxes
CVE-2025-9164Multiple DLL Search Order Hijacking Vulnerabilities in Docker Desktop Installer for WindowsDocker Desktop
CVE-2025-9074Docker Desktop allows unauthenticated access to Docker Engine API from containersDocker Desktop
CVE-2025-6587Exposure of system environment variables in Docker Desktop diagnostic logsDocker Desktop
CVE-2025-64443DNS Rebinding vulnerability present when running MCP Gateway in sse or streaming modedocker mcp-gateway
CVE-2025-62725Docker Compose Vulnerable to Path Traversal via OCI Artifact Layer Annotationsdocker compose
CVE-2025-4095Registry Access Management (RAM) policies not applied when sign-in enforcement is configured via a configuration profileDocker Desktop
CVE-2025-3911Exposure in Docker Desktop logs of environment variables configured for running containersDocker Desktop
CVE-2025-3224Elevation of Privilege in Docker Desktop for Windows during Upgrade due to Insecure Directory DeletionDocker Desktop
CVE-2025-15558Docker Desktop Docker Plugins Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityDocker Compose
CVE-2025-14740Docker Desktop for Windows Incorrect Permission Assignment Privilege Escalation VulnerabilitiesDocker Desktop
CVE-2025-13743Expired Personal Access Tokens (PATs) are recorded in Docker Desktop diagnostic logsDocker Desktop
CVE-2025-0495Secrets leakage to telemetry endpoint via cache backend configuration via buildxdocker buildx
CVE-2024-9348Docker Desktop before v4.34.3 allows RCE via unsanitized GitHub source link in Build viewDocker Desktop
CVE-2024-8696A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a…Docker Desktop
CVE-2024-8695A remote code execution (RCE) vulnerability via crafted extension description/changelog could be abused by a malicious…Docker Desktop
CVE-2024-6222In Docker Desktop before v4.29.0 an attacker who has gained access to the Docker Desktop VM through a container…Docker Desktop
CVE-2024-5652In Docker Desktop on Windows before v4.31.0 allows a user in the docker-users group to cause a Windows…Docker Desktop
CVE-2023-5166Docker Desktop before 4.23.0 allows Access Token theft via a crafted extension icon URLDocker Desktop
CVE-2023-5165Docker Desktop before 4.23.0 allows Enhanced Container Isolation bypass via debug shellDocker Desktop
CVE-2023-1802In Docker Desktop 4.17.x the Artifactory Integration falls back to sending registry credentials over plain HTTP if the…Docker Desktop
CVE-2023-0633In Docker Desktop on Windows before 4.12.0 an argument injection to installer may result in LPEDocker Desktop
CVE-2023-0629Docker Desktop before 4.17.0 allows an unprivileged user to bypass Enhanced Container Isolation restrictions via the…Docker Desktop
CVE-2023-0628Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container…Docker Desktop
CVE-2023-0626Docker Desktop before 4.12.0 is vulnerable to RCE via query parameters in message-box routeDocker Desktop
CVE-2023-0625Docker Desktop before 4.12.0 is vulnerable to RCE via a crafted extension description or changelogDocker Desktop
50 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.