An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,287 Dependabot PRs
Latest PR:
1 day ago
Unique Repositories:
1,748 repositories
Unique Repos (30 days):
32 repositories
Security Advisories
Moby (Docker Engine) started with non-empty inheritable Linux process capabilities
GHSA-2mm7-x5h6-5pvq CVE-2022-24769 MODERATE published over 1 year ago • updated 3 days ago
### Impact A bug was found in Moby (Docker Engine) where containers were incorrectly started with non-empty inheritable Linux process capabilities...
Moby firewalld reload makes published container ports accessible from remote hosts
GHSA-x4rx-4gw3-53p4 CVE-2025-54388 MODERATE published 5 months ago • updated about 15 hours ago
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various o...
Arbitrary Code Execution
GHSA-997c-fj8j-rq5h CVE-2014-9357 HIGH published almost 4 years ago • updated about 1 month ago
Docker 1.3.2 allows remote attackers to execute arbitrary code with root privileges via a crafted (1) image or (2) build in a Dockerfile in an LZMA...
Moby Docker cp broken with debian containers
GHSA-v2cv-wwxq-qq97 CVE-2019-14271 CRITICAL published over 3 years ago • updated 30 days ago
In Docker 19.03.x before 19.03.1 linked against the GNU C Library (aka glibc), code injection can occur when the nsswitch facility dynamically load...
Privilege Escalation in Docker
GHSA-wxj3-qwv4-cvfm CVE-2014-3499 HIGH published almost 4 years ago • updated 25 days ago
Docker 1.0.0 uses world-readable and world-writable permissions on the management socket, which allows local users to gain privileges via unspecifi...
Recent PRs (filtered by: Patch PRs )
golang: bump github.com/docker/docker from 28.5.1+incompatible to 28.5.2+incompatible

jauderho/dive #236

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 2 months ago 2 comments
jauderho
chore: bump the engine group across 2 directories with 18 updates

sipsma/dagger #1161

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 2 months ago 1 comment
sipsma
chore: bump the engine group across 2 directories with 18 updates

dagger/dagger #11363

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed about 2 months ago 1 comment
dagger
Bump github.com/docker/docker from 28.5.1+incompatible to 28.5.2+incompatible

spiffe/spire #6422

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 2 months ago 2 comments
spiffe
chore(deps): bump the go_modules group across 1 directory with 9 updates

layer-3/clearsync #526

25.0.2+incompatible → 25.0.13+incompatible Patch PR
Open about 2 months ago 1 comment
layer-3
Bump the all-updates group with 11 updates

cirruslabs/cirrus-cli #957

28.5.0+incompatible → 28.5.1+incompatible Patch PR
Closed 2 months ago 2 comments
cirruslabs
chore(deps): bump the engine group across 2 directories with 27 updates

dagger/dagger #10972

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Closed 4 months ago 1 comment
dagger
chore(deps): bump the all-dependencies group with 9 updates

tensorchord/envd #2037

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Open 4 months ago
tensorchord
build(deps): bump the dependencies group across 1 directory with 9 updates

nektos/act #5920

28.3.0+incompatible → 28.3.3+incompatible Patch PR
Open 4 months ago 4 comments
nektos
chore(deps): bump the engine group across 1 directory with 24 updates

sipsma/dagger #1099

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Open 4 months ago 1 comment
sipsma
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

29

Active advisories
CRITICAL 2
HIGH 8
MODERATE 16
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
7 months ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,492 (47.1%)
Merged 824 (15.6%)
Closed 1,577 (29.8%)
PR Types
Minor 1,997 (37.8%)
Major 1,960 (37.1%)
Patch 934 (17.7%)