An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,467 Dependabot PRs
Latest PR:
8 days ago
Unique Repositories:
1,823 repositories
Unique Repos (30 days):
4 repositories
Security Advisories
/sys/devices/virtual/powercap accessible by default to containers
GHSA-jq35-85cj-fj4p MODERATE published over 2 years ago • updated 7 days ago
Intel's RAPL (Running Average Power Limit) feature, introduced by the Sandy Bridge microarchitecture, provides software insights into hardware ener...
Moby firewalld reload makes published container ports accessible from remote hosts
GHSA-x4rx-4gw3-53p4 CVE-2025-54388 MODERATE published 10 months ago • updated about 9 hours ago
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various o...
Authz zero length regression
GHSA-v23v-6jw2-98fq CVE-2024-41110 CRITICAL published almost 2 years ago • updated about 16 hours ago
A security vulnerability has been detected in certain versions of Docker Engine, which could allow an attacker to bypass [authorization plugins (Au...
Moby (Docker Engine) is vulnerable to Ambiguous OCI manifest parsing
GHSA-xmmx-7jpf-fx42 MODERATE published almost 2 years ago • updated about 16 hours ago
### Impact In the OCI Distribution Specification version 1.0.0 and prior and in the OCI Image Specification version 1.0.1 and prior, manifest and i...
Arbitrary File Override in Docker Engine
GHSA-v4h8-794j-g8mm CVE-2015-3631 MODERATE published over 4 years ago • updated 8 days ago
Docker Engine before 1.6.1 allows local users to set arbitrary Linux Security Modules (LSM) and docker_t policies via an image that allows volumes ...
Recent PRs
fix(deps): bump the external group across 1 directory with 22 updates

opentdf/platform #2982

28.3.3+incompatible → 28.5.2+incompatible Minor PR
Open 5 months ago 5 comments
opentdf
chore: bump the engine group across 2 directories with 47 updates

sipsma/dagger #1201

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 5 months ago 1 comment
sipsma
Bump github.com/docker/docker from 0.7.3-0.20190327010347-be7ac8be2ae0 to 25.0.13+incompatible

kmodules/kubectl #2

0.7.3-0.20190327010347-be7ac8be2ae0 → 25.0.13+incompatible Major PR
Open 5 months ago 1 comment
kmodules
fix(deps): bump the external group across 1 directory with 21 updates

opentdf/platform #2980

28.3.3+incompatible → 28.5.2+incompatible Minor PR
Open 5 months ago 1 comment
opentdf
chore: bump the engine group across 2 directories with 52 updates

TomChv/dagger #516

28.4.0+incompatible → 28.5.2+incompatible Minor PR
Open 5 months ago 2 comments
TomChv
Bump the docker group across 1 directory with 4 updates

dependabot/cli #553

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 5 months ago 1 comment
dependabot
build(deps): bump the moby group with 2 updates

apptainer/apptainer #3276

27.5.1+incompatible → 28.5.2+incompatible Major PR
Closed 5 months ago 2 comments
apptainer
Bump the go_modules group across 31 directories with 13 updates

naywint3/gitpod #2

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 5 months ago 1 comment
naywint3
chore(deps): bump the go_modules group across 2 directories with 3 updates

gnolang/gno #4982

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 5 months ago 5 comments
gnolang
chore: bump the engine group across 2 directories with 42 updates

shykes/dagger #464

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 5 months ago 1 comment
shykes
Bump the go-minor group across 1 directory with 11 updates

Nuvix-Tech/cli #19

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 6 months ago 2 comments
Nuvix-Tech
chore(deps): bump the go_modules group across 1 directory with 5 updates

Layr-Labs/kona #12

27.5.1+incompatible → 28.0.0+incompatible Major PR
Closed 6 months ago 3 comments
Layr-Labs
Bump the go-minor group across 1 directory with 10 updates

Nuvix-Tech/cli #18

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 2 comments
Nuvix-Tech
chore(deps): bump the engine group across 2 directories with 39 updates

nludd25/dagger #9

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 6 months ago 1 comment
nludd25
chore: bump the engine group across 2 directories with 39 updates

sipsma/dagger #1187

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 2 comments
sipsma
chore(deps): bump the go group across 1 directory with 31 updates

pomerium/pomerium #5969

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 5 comments
pomerium
chore(deps): bump the go group with 28 updates

pomerium/pomerium #5952

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 1 comment
pomerium
chore(deps): bump the all-dependencies group with 7 updates

kemingy/envd #122

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Closed 6 months ago 1 comment
kemingy
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

33

Active advisories
CRITICAL 2
HIGH 10
MODERATE 18
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
12 months ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,557 (46.8%)
Merged 824 (15.1%)
Closed 1,692 (30.9%)
PR Types
Major 2,063 (37.7%)
Minor 2,025 (37.0%)
Patch 983 (18.0%)