THREAT OPS › Threat News › Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files
Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files
Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere else on the host, Docker warns in a security announcement on September 15.
The escape runs with the rights of the host account that runs the virtual machine. The flaw, CVE-2026-77179, is rated Critical, affects versions
Indicators of compromise
- CVE-2026-77179cve