Docker Sandboxes Flaw Lets a Guest Reach Host Unix Sockets

DedicatedLinux

Docker has fixed a high-severity Docker Sandboxes vulnerability that allowed a malicious guest to redirect a host-side relay toward Unix sockets outside its authorized workspace. The flaw, CVE-2026-79994, broke a guest-to-host trust boundary even though the sandbox itself ran inside a separate microVM.LinuxSecurity – Security ArticlesRead More