threat
engine
.sh
Back
·
··:··
Home
/
Product
/
mobyproject moby
Product
mobyproject moby
22 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-34040
< 29.3.1
Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows attack
8.8
HIGH
CVE-2026-33997
< 29.3.1
Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugin
6.8
MEDIUM
CVE-2025-54410
< 25.0.13
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runti
3.3
LOW
CVE-2025-54388
>= 28.2.0 and < 28.3.3
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runti
4.6
MEDIUM
CVE-2024-36623
<= 25.0.3
moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concu
8.1
HIGH
CVE-2024-36621
all versions
moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used t
6.5
MEDIUM
CVE-2024-36620
>= 25.0.0 and <= 26.0.2
moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go.
6.5
MEDIUM
CVE-2024-32473
>= 26.0.0 and < 26.0.2
Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of co
4.7
MEDIUM
CVE-2024-29018
< 23.0.11
Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of co
5.9
MEDIUM
CVE-2024-24557
< 24.0.9
Moby is an open-source project created by Docker to enable software containerization. The classic builder cache system is prone to
6.9
MEDIUM
CVE-2023-28842
>= 1.12.0 and < 20.10.24
Moby) is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, an
6.8
MEDIUM
CVE-2023-28841
>= 1.12.0 and < 20.10.24
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and
6.8
MEDIUM
CVE-2023-28840
>= 1.12.0 and < 20.10.24
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and
7.5
HIGH
CVE-2022-36109
< 20.10.18
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) wher
5.3
MEDIUM
CVE-2022-27652
< 20.10.14
A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissions. A vulnerability was found
5.3
MEDIUM
CVE-2022-24769
< 20.10.14
Moby is an open-source project created by Docker to enable and accelerate software containerization. A bug was found in Moby (Dock
5.9
MEDIUM
CVE-2021-41091
< 20.10.9
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) wher
6.3
MEDIUM
CVE-2021-41089
< 20.10.9
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) wher
2.8
LOW
CVE-2018-12608
< 17.06.0
An issue was discovered in Docker Moby before 17.06.0. The Docker engine validated a client TLS certificate using both the configu
7.5
HIGH
CVE-2018-10892
>= 1.11 and <= 17.03.2
The default OCI linux spec in oci/defaults{_linux}.go in Docker/Moby from 1.11 to current does not block /proc/acpi pathnames. The
5.3
MEDIUM
CVE-2017-16539
<= 17.03.2
The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allo
5.9
MEDIUM
CVE-2001-0275
all versions
Moby Netsuite Web Server 1.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin