No analysis available yet.
Vendor Workaround
Avoid using BuildKit frontends from untrusted sources. A frontend image is usually specified as the #syntax line on your Dockerfile, or with --frontend flag when using buildctl build command.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 21 Jul 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Jul 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A malicious BuildKit client or frontend could craft a request that could lead to BuildKit daemon crashing with a panic. | |
| Title | Possible panic when incorrect parameters sent from frontend | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Docker
Published:
Updated: 2026-07-21T17:01:55.840Z
Reserved: 2026-07-14T19:31:00.046Z
Link: CVE-2026-15792
Updated: 2026-07-21T17:01:25.373Z
No data.
No data.
OpenCVE Enrichment
No data.
-
CWE-20
Improper Input Validation