An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,337 Dependabot PRs
Latest PR:
2 days ago
Unique Repositories:
1,763 repositories
Unique Repos (30 days):
27 repositories
Security Advisories
Docker supplementary group permissions not set up properly, allowing attackers to bypass primary group restrictions
GHSA-rc4r-wh2q-q6c4 CVE-2022-36109 MODERATE published over 3 years ago • updated 2 days ago
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where supplementary g...
Moby (Docker Engine) started with non-empty inheritable Linux process capabilities
GHSA-2mm7-x5h6-5pvq CVE-2022-24769 MODERATE published over 1 year ago • updated 26 days ago
### Impact A bug was found in Moby (Docker Engine) where containers were incorrectly started with non-empty inheritable Linux process capabilities...
Arbitrary Code Execution
GHSA-997c-fj8j-rq5h CVE-2014-9357 HIGH published almost 4 years ago • updated 2 months ago
Docker 1.3.2 allows remote attackers to execute arbitrary code with root privileges via a crafted (1) image or (2) build in a Dockerfile in an LZMA...
Symlink Attack in Libcontainer and Docker Engine
GHSA-g7v2-2qxx-wjrw CVE-2015-3627 MODERATE published almost 4 years ago • updated about 22 hours ago
Libcontainer and Docker Engine before 1.6.1 opens the file-descriptor passed to the pid-1 process before performing the chroot, which allows local ...
Moby's external DNS requests from 'internal' networks could lead to data exfiltration
GHSA-mq39-4gv4-mvpx CVE-2024-29018 MODERATE published almost 2 years ago • updated 6 days ago
Moby is an open source container framework originally developed by Docker Inc. as Docker. It is a key component of Docker Engine, Docker Desktop, a...
Recent PRs
chore(deps): bump the all-dependencies group with 9 updates

tensorchord/envd #2037

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Open 5 months ago
tensorchord
build(deps): bump the dependencies group across 1 directory with 9 updates

nektos/act #5920

28.3.0+incompatible → 28.3.3+incompatible Patch PR
Open 5 months ago 4 comments
nektos
Bump the gomod group with 2 updates

dsp-testing/dependabot-go-filter-incompatible #5

20.10.7+incompatible → 28.3.3+incompatible Major PR
Closed 5 months ago 1 comment
dsp-testing
Bump the go_modules group across 1 directory with 9 updates

AKJUS/secure-repo #14

20.10.14+incompatible → 28.0.0+incompatible Major PR
Open 5 months ago 1 comment
AKJUS
Bump the go_modules group across 1 directory with 6 updates

offsoc/slim #3

25.0.6+incompatible → 28.0.0+incompatible Major PR
Open 5 months ago
offsoc
chore(deps): bump the go_modules group with 4 updates

mudler/LocalAI #6161

27.1.1+incompatible → 28.0.0+incompatible Major PR
Merged 5 months ago 1 comment
mudler
Bump the oc-mirror-v1-security-updates group with 3 updates

openshift/oc-mirror #1254

27.5.0+incompatible → 28.0.0+incompatible Major PR
Closed 5 months ago 6 comments
openshift
Bump the go_modules group with 10 updates

DarkWanderer/jaeger-clickhouse #32

20.10.7+incompatible → 28.0.0+incompatible Major PR
Open 5 months ago
DarkWanderer
Bump the go_modules group across 3 directories with 4 updates

peaceiris/pipecd #12

26.1.5+incompatible → 28.0.0+incompatible Major PR
Closed 5 months ago 3 comments
peaceiris
Bump the go_modules group across 5 directories with 18 updates

Centaurioun/vault #21

20.10.18+incompatible → 28.0.0+incompatible Major PR
Open 5 months ago 1 comment
Centaurioun
Bump the go_modules group across 3 directories with 1 update

Shuffle/Shuffle #1801

28.2.2+incompatible → 28.3.3+incompatible Minor PR
Open 5 months ago 1 comment
Shuffle
build(deps): bump the go_modules group with 2 updates

datagravity-ai/keel #466

27.3.1+incompatible → 28.0.0+incompatible Major PR
Closed 5 months ago 1 comment
datagravity-ai
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

29

Active advisories
CRITICAL 2
HIGH 8
MODERATE 16
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
8 months ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,513 (47.1%)
Merged 824 (15.4%)
Closed 1,606 (30.1%)
PR Types
Minor 2,006 (37.6%)
Major 1,982 (37.1%)
Patch 953 (17.9%)