Docker Desktop before 4.12.0 is vulnerable to RCE via query parameters in message-box route.
This issue affects Docker Desktop: before 4.12.0.
This issue affects Docker Desktop: before 4.12.0.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12660 | Docker Desktop before 4.12.0 is vulnerable to RCE via query parameters in message-box route. This issue affects Docker Desktop: before 4.12.0. |
Fixes
Solution
Update to 4.12.0
Workaround
Disable extensions
References
| Link | Providers |
|---|---|
| https://docs.docker.com/desktop/release-notes/#4120 |
|
History
Tue, 24 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Docker
Published:
Updated: 2024-09-24T15:38:38.480Z
Reserved: 2023-02-01T22:31:04.271Z
Link: CVE-2023-0626
Updated: 2024-08-02T05:17:50.222Z
Status : Modified
Published: 2023-09-25T16:15:13.303
Modified: 2024-11-21T07:37:30.583
Link: CVE-2023-0626
No data.
OpenCVE Enrichment
No data.
EUVD