An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,467 Dependabot PRs
Latest PR:
9 days ago
Unique Repositories:
1,823 repositories
Unique Repos (30 days):
4 repositories
Security Advisories
/sys/devices/virtual/powercap accessible by default to containers
GHSA-jq35-85cj-fj4p MODERATE published over 2 years ago • updated about 2 hours ago
Intel's RAPL (Running Average Power Limit) feature, introduced by the Sandy Bridge microarchitecture, provides software insights into hardware ener...
Moby firewalld reload makes published container ports accessible from remote hosts
GHSA-x4rx-4gw3-53p4 CVE-2025-54388 MODERATE published 10 months ago • updated 1 day ago
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various o...
Directory Traversal in Docker
GHSA-qmmc-jppf-32wv CVE-2014-9358 MODERATE published over 4 years ago • updated about 1 hour ago
Docker before 1.3.3 does not properly validate image IDs, which allows remote attackers to conduct path traversal attacks and spoof repositories vi...
Authz zero length regression
GHSA-v23v-6jw2-98fq CVE-2024-41110 CRITICAL published almost 2 years ago • updated 1 day ago
A security vulnerability has been detected in certain versions of Docker Engine, which could allow an attacker to bypass [authorization plugins (Au...
Moby (Docker Engine) is vulnerable to Ambiguous OCI manifest parsing
GHSA-xmmx-7jpf-fx42 MODERATE published almost 2 years ago • updated 1 day ago
### Impact In the OCI Distribution Specification version 1.0.0 and prior and in the OCI Image Specification version 1.0.1 and prior, manifest and i...
Recent PRs (filtered by: Patch PRs )
build(deps): bump the dependencies group with 7 updates

actions-oss/act-cli #123

28.3.0+incompatible → 28.3.3+incompatible Patch PR
Open 10 months ago
actions-oss
chore: bump the go-deps group across 1 directory with 16 updates

rudderlabs/rudder-server #6208

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Closed 10 months ago 1 comment
rudderlabs
build(deps): bump the dependencies group with 5 updates

nektos/act #5889

28.3.0+incompatible → 28.3.3+incompatible Patch PR
Open 10 months ago
nektos
chore(deps): bump the go-deps group with 4 updates

alterway/sshportal #70

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Open 10 months ago
alterway
Bump the dev-dependencies group with 3 updates

yandex/mysync #194

28.3.0+incompatible → 28.3.3+incompatible Patch PR
Merged 10 months ago
yandex
chore: bump the go-deps group with 11 updates

rudderlabs/rudder-server #6202

28.3.2+incompatible → 28.3.3+incompatible Patch PR
Open 10 months ago
rudderlabs
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

33

Active advisories
CRITICAL 2
HIGH 10
MODERATE 18
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
12 months ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,557 (46.8%)
Merged 824 (15.1%)
Closed 1,692 (30.9%)
PR Types
Major 2,063 (37.7%)
Minor 2,025 (37.0%)
Patch 983 (18.0%)