moby
Cloud & SaaSoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting moby.
- CVE-2026-42306Moby: Race condition in docker cp allows bind mount redirection to host path7.2
- CVE-2026-41568Moby: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap6.1
- CVE-2026-41567Docker: `PUT /containers/{id}/archive` executes container binary on the host7.2
- CVE-2026-33997Moby: Off-by-one error in plugin privilege validation6.8
- CVE-2026-34040Moby: AuthZ plugin bypass with oversized request body8.8
- CVE-2026-33748BuildKit Git URL subdir component can cause access to restricted files7.5
- CVE-2026-33747BuildKit vulnerable to malicious frontend causing file escape outside of storage root8.4
- CVE-2025-54410Moby's Firewalld reload removes bridge network isolation3.3
- CVE-2025-54388Moby's Firewalld reload makes published container ports accessible from remote hosts4.6
- CVE-2024-41110Moby authz zero length regression9.9
- CVE-2024-32473Moby IPv6 enabled on IPv4-only network interfaces4.7
- CVE-2024-29018External DNS requests from 'internal' networks could lead to data exfiltration5.9
- CVE-2024-24557Moby classic builder cache poisoning6.9
- CVE-2024-23653BuildKit interactive containers API does not validate entitlements check9.8
- CVE-2024-23652BuildKit possible host system access from mount stub cleaner10.0