moby
Cloud & SaaSoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting moby.
- CVE-2026-15793Git source checkout from a bundle file could lead to command injection7.5
- CVE-2026-15792Possible panic when incorrect parameters sent from frontend7.5
- CVE-2026-15791LLB file operation can be tricked to remove /tmp directory contents7.5
- CVE-2026-15789Malicious client can bypass destination directory validation on local sources upload7.5
- CVE-2026-15788WCOW cache mount source selector resolves NTFS junctions outside of cache root7.5
- CVE-2026-42306Moby: Race condition in docker cp allows bind mount redirection to host path7.2
- CVE-2026-41568Moby: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap6.1
- CVE-2026-41567Docker: `PUT /containers/{id}/archive` executes container binary on the host7.2
- CVE-2026-35469SpdyStream: DOS on CRI6.5
- CVE-2026-33997Moby: Off-by-one error in plugin privilege validation6.8
- CVE-2026-34040Moby: AuthZ plugin bypass with oversized request body8.8
- CVE-2026-33748BuildKit Git URL subdir component can cause access to restricted files7.5
- CVE-2026-33747BuildKit vulnerable to malicious frontend causing file escape outside of storage root8.4
- CVE-2025-54410Moby's Firewalld reload removes bridge network isolation3.3
- CVE-2025-54388Moby's Firewalld reload makes published container ports accessible from remote hosts4.6