THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-33997 (MEDIUM 6.8) — Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugins privilege validation to be bypassed during docker plugin install. Due to an error in the daemon's privilege comparison logic, the daemon may incorre

[NVD] CVE-2026-33997 (MEDIUM 6.8) — Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugins privilege validation to be bypassed during docker plugin install. Due to an error in the daemon's privilege comparison logic, the daemon may incorre

lownvdPublished 2026-03-31

CVE-2026-33997 CVSS: 6.8 MEDIUM Published: 2026-03-31T03:15:57.523

Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugins privilege validation to be bypassed during docker plugin install. Due to an error in the daemon's privilege comparison logic, the daemon may incorrectly accept a privilege set that differs from the on

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-33997