Skip to main content

Vendor/product archive

mobyproject / moby CVEs

Beta · best-effort

21 CVEs tagged to mobyproject / moby0 Critical, 4 High, 15 Medium, 2 Low, 0 Unrated.

CVE-2025-54410

Published Jul 30, 2025

Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various other downstream projects/product…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-54388

Published Jul 30, 2025

Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various other downstream projects/product…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-36623

Published Nov 29, 2024

moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corrupti…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-36621

Published Nov 29, 2024

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureL…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-36620

Published Nov 29, 2024

moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-32473

Published Apr 18, 2024

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is n…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-29018

Published Mar 20, 2024

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. Moby's networking im…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24557

Published Feb 1, 2024

Moby is an open-source project created by Docker to enable software containerization. The classic builder cache system is prone to cache poisoning if the image is built FROM scrat…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28842

Published Apr 4, 2023

Moby) is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream projects/products. The…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28841

Published Apr 4, 2023

Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream projects/products. The…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28840

Published Apr 4, 2023

Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream projects/products. The…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-36109

Published Sep 9, 2022

Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where supplementary groups are not set up properly. I…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-41089

Published Oct 4, 2021

Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where attempting to copy files using `docker cp` into…

CVSS 2.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2018-12608

Published Sep 10, 2018

An issue was discovered in Docker Moby before 17.06.0. The Docker engine validated a client TLS certificate using both the configured client CA root certificate and all system roo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-16539

Published Nov 4, 2017

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain o…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-21 of 21 CVEsPage 1 of 1