CVE-2023-0628
13.03.2023, 12:15
Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container during initialization by tricking a user to open a crafted malicious docker-desktop:// URL.
Vendor | Product | Version |
---|---|---|
docker | docker_desktop | 𝑥 < 4.17.0 |
𝑥
= Vulnerable software versions