CVE-2026-15793 | moby BuildKit up to 0.31.0 raw low-level API git.checkoutbundle os command injection

SecurityVulns

A vulnerability classified as very critical has been found in moby BuildKit up to 0.31.0. This issue affects some unknown processing of the component raw low-level API. Performing a manipulation of the argument git.checkoutbundle results in os command injection.

This vulnerability is reported as CVE-2026-15793. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More