Home/Product/mobyproject moby
Product

mobyproject moby

22 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-34040
< 29.3.1
Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows attack
8.8HIGH
CVE-2026-33997
< 29.3.1
Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugin
6.8MEDIUM
CVE-2025-54410
< 25.0.13
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runti
3.3LOW
CVE-2025-54388
>= 28.2.0 and < 28.3.3
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runti
4.6MEDIUM
CVE-2024-36623
<= 25.0.3
moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concu
8.1HIGH
CVE-2024-36621
all versions
moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used t
6.5MEDIUM
CVE-2024-36620
>= 25.0.0 and <= 26.0.2
moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go.
6.5MEDIUM
CVE-2024-32473
>= 26.0.0 and < 26.0.2
Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of co
4.7MEDIUM
CVE-2024-29018
< 23.0.11
Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of co
5.9MEDIUM
CVE-2024-24557
< 24.0.9
Moby is an open-source project created by Docker to enable software containerization. The classic builder cache system is prone to
6.9MEDIUM
CVE-2023-28842
>= 1.12.0 and < 20.10.24
Moby) is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, an
6.8MEDIUM
CVE-2023-28841
>= 1.12.0 and < 20.10.24
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and
6.8MEDIUM
CVE-2023-28840
>= 1.12.0 and < 20.10.24
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and
7.5HIGH
CVE-2022-36109
< 20.10.18
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) wher
5.3MEDIUM
CVE-2022-27652
< 20.10.14
A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissions. A vulnerability was found
5.3MEDIUM
CVE-2022-24769
< 20.10.14
Moby is an open-source project created by Docker to enable and accelerate software containerization. A bug was found in Moby (Dock
5.9MEDIUM
CVE-2021-41091
< 20.10.9
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) wher
6.3MEDIUM
CVE-2021-41089
< 20.10.9
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) wher
2.8LOW
CVE-2018-12608
< 17.06.0
An issue was discovered in Docker Moby before 17.06.0. The Docker engine validated a client TLS certificate using both the configu
7.5HIGH
CVE-2018-10892
>= 1.11 and <= 17.03.2
The default OCI linux spec in oci/defaults{_linux}.go in Docker/Moby from 1.11 to current does not block /proc/acpi pathnames. The
5.3MEDIUM
CVE-2017-16539
<= 17.03.2
The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allo
5.9MEDIUM
CVE-2001-0275
all versions
Moby Netsuite Web Server 1.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin