CVE-2026-33997 — Moby is an open source container framework. Prior to version 29.3.1, a security…
Image via opengraph.githubassets.com
🚨 CVE-2026-33997 Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugins privilege validation to be bypassed during docker plugin install. Due to an error in the daemon's privilege comparison logic, the daemon may incorrect
Release v29.3.1 · moby/moby
github.com
What This Means For You
- New vulnerability disclosed — verify if your stack is exposed.
- New tool or resource available — evaluate for your security workflow.
Indicators of Compromise
| ID | Type | Indicator |
|---|---|---|
| CVE-2026-33997 | Auth Bypass | Moby, prior to version 29.3.1, allows plugins privilege validation to be bypassed during docker plugin install due to an error in the daemon's privilege comparison logic. |
Source & Attribution
| Source Platform | Telegram |
| Channel | CVE Notify |
| Channel ID | 1129491012 |
| Message ID | 157907 |
| Published | April 03, 2026 at 20:27 UTC |
| Original Link | https://github.com/moby/moby/releases/tag/docker-v29.3.1 |
This content was curated and summarized by Shimi's Cyber World for informational purposes. It is not copied or republished in full. All intellectual property rights remain with the original author and source.
Believe this infringes your rights? Submit a takedown request.
Found this interesting? Follow us on LinkedIn to stay ahead.
Share