CVE-2026-33997 — Moby is an open source container framework. Prior to version 29.3.1, a security…
Image via opengraph.githubassets.com
🚨 CVE-2026-33997 Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugins privilege validation to be bypassed during docker plugin install. Due to an error in the daemon's privilege comparison logic, the daemon may incorrect
Release v29.3.1 · moby/moby
github.com
What This Means For You
- New vulnerability disclosed — verify if your stack is exposed.
- New tool or resource available — evaluate for your security workflow.
Indicators of Compromise
| ID | Type | Indicator |
|---|---|---|
| CVE-2026-33997 | Auth Bypass | Moby, prior to version 29.3.1, allows plugins privilege validation to be bypassed during docker plugin install due to an error in the daemon's privilege comparison logic. |
🔎
Turn this CVE into SIEM detection coverage
Generate detection rules for Splunk, Sentinel, QRadar & Elastic — straight from this vulnerability. Use /detect in the Intel Bot.
Open Intel Bot →
Source & Attribution
| Source Platform | Telegram |
| Channel | CVE Notify |
| Published | April 03, 2026 at 20:27 UTC |
This content was curated and summarized by Shimi's Cyber World for informational purposes. It is not copied or republished in full. All intellectual property rights remain with the original author and source.
Believe this infringes your rights? Submit a takedown request.