An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,467 Dependabot PRs
Latest PR:
8 days ago
Unique Repositories:
1,823 repositories
Unique Repos (30 days):
4 repositories
Security Advisories
/sys/devices/virtual/powercap accessible by default to containers
GHSA-jq35-85cj-fj4p MODERATE published over 2 years ago • updated 6 days ago
Intel's RAPL (Running Average Power Limit) feature, introduced by the Sandy Bridge microarchitecture, provides software insights into hardware ener...
Moby firewalld reload makes published container ports accessible from remote hosts
GHSA-x4rx-4gw3-53p4 CVE-2025-54388 MODERATE published 10 months ago • updated about 5 hours ago
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various o...
Authz zero length regression
GHSA-v23v-6jw2-98fq CVE-2024-41110 CRITICAL published almost 2 years ago • updated about 12 hours ago
A security vulnerability has been detected in certain versions of Docker Engine, which could allow an attacker to bypass [authorization plugins (Au...
Moby (Docker Engine) is vulnerable to Ambiguous OCI manifest parsing
GHSA-xmmx-7jpf-fx42 MODERATE published almost 2 years ago • updated about 12 hours ago
### Impact In the OCI Distribution Specification version 1.0.0 and prior and in the OCI Image Specification version 1.0.1 and prior, manifest and i...
Arbitrary File Override in Docker Engine
GHSA-v4h8-794j-g8mm CVE-2015-3631 MODERATE published over 4 years ago • updated 8 days ago
Docker Engine before 1.6.1 allows local users to set arbitrary Linux Security Modules (LSM) and docker_t policies via an image that allows volumes ...
Recent PRs (filtered by: Patch PRs )
chore(deps): bump the all-dependencies group with 7 updates

kemingy/envd #122

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 1 comment
kemingy
chore(deps): bump the all-dependencies group with 4 updates

tensorchord/envd #2070

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 1 comment
tensorchord
chore: bump the golang group across 1 directory with 17 updates

AndiDog/skaffold #55

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 1 comment
AndiDog
build(deps): Bump the all-go group across 5 directories with 6 updates

evstack/ev-node #2881

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 6 months ago 3 comments
evstack
chore: bump the engine group across 2 directories with 36 updates

sipsma/dagger #1175

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 6 months ago 2 comments
sipsma
chore: bump the engine group across 2 directories with 35 updates

sipsma/dagger #1170

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 2 comments
sipsma
build(deps): bump the go_modules group across 1 directory with 6 updates

KunalSin9h/meltcd #122

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 6 months ago 2 comments
KunalSin9h
Bump the go-minor group across 1 directory with 7 updates

Nuvix-Tech/cli #13

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 2 comments
Nuvix-Tech
build(deps): Bump the all-go group across 5 directories with 7 updates

evstack/ev-node #2854

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 6 months ago 3 comments
evstack
chore(deps): bump the go group across 1 directory with 19 updates

envoyproxy/ai-gateway #1534

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 1 comment
envoyproxy
Bump the go-minor group across 1 directory with 3 updates

Nuvix-Tech/cli #11

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 7 months ago 2 comments
Nuvix-Tech
build(deps): bump the go-dependencies group with 5 updates

buildpacks/pack #2463

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 7 months ago 1 comment
buildpacks
Bump the golang-dependencies group across 2 directories with 3 updates

ls1intum/hades #318

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 2 comments
ls1intum
chore(deps): bump the dependencies group across 1 directory with 6 updates

openfga/openfga #2798

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 2 comments
openfga
build(deps): bump the dependencies group in /systemtest with 5 updates

elastic/apm-server #19529

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 2 comments
elastic
chore: bump the golang group across 1 directory with 12 updates

AndiDog/skaffold #53

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 1 comment
AndiDog
chore: bump the engine group across 2 directories with 25 updates

sipsma/dagger #1166

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 1 comment
sipsma
deps(deps): bump the go-dependencies group with 3 updates

avivsinai/jenkins-cli #11

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 1 comment
avivsinai
Bump the go-modules group across 1 directory with 9 updates

picatz/dynabuf #47

28.5.0+incompatible → 28.5.2+incompatible Patch PR
Closed 7 months ago 2 comments
picatz
chore(deps): bump the minor group across 1 directory with 5 updates

containifyci/engine-ci #310

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 24 comments
containifyci
chore: bump the engine group across 2 directories with 22 updates

dagger/dagger #11378

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 7 months ago 1 comment
dagger
Bump the go_modules group across 1 directory with 2 updates

devfile/registry-operator #111

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 7 months ago 5 comments
devfile
Bump the go-docker-dependencies group with 2 updates

tektoncd/cli #2639

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 2 comments
tektoncd
chore: bump the engine group across 2 directories with 18 updates

sipsma/dagger #1161

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 1 comment
sipsma
chore: bump the engine group across 2 directories with 18 updates

dagger/dagger #11363

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 7 months ago 1 comment
dagger
Bump github.com/docker/docker from 28.5.1+incompatible to 28.5.2+incompatible

spiffe/spire #6422

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 7 months ago 2 comments
spiffe
chore(deps): bump the go_modules group across 1 directory with 9 updates

layer-3/clearsync #526

25.0.2+incompatible → 25.0.13+incompatible Patch PR
Open 7 months ago 1 comment
layer-3
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

33

Active advisories
CRITICAL 2
HIGH 10
MODERATE 18
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
12 months ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,557 (46.8%)
Merged 824 (15.1%)
Closed 1,692 (30.9%)
PR Types
Major 2,063 (37.7%)
Minor 2,025 (37.0%)
Patch 983 (18.0%)