An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,467 Dependabot PRs
Latest PR:
13 days ago
Unique Repositories:
1,823 repositories
Unique Repos (30 days):
4 repositories
Security Advisories
Docker: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap
GHSA-vp62-88p7-qqf5 CVE-2026-41568 MODERATE published 13 days ago • updated 1 day ago
## Summary A race condition during `docker cp` mount setup allows a malicious container to create empty files or directories at arbitrary absolute...
/sys/devices/virtual/powercap accessible by default to containers
GHSA-jq35-85cj-fj4p MODERATE published over 2 years ago • updated 3 days ago
Intel's RAPL (Running Average Power Limit) feature, introduced by the Sandy Bridge microarchitecture, provides software insights into hardware ener...
Moby (Docker Engine) started with non-empty inheritable Linux process capabilities
GHSA-2mm7-x5h6-5pvq CVE-2022-24769 MODERATE published about 2 years ago • updated about 2 hours ago
### Impact A bug was found in Moby (Docker Engine) where containers were incorrectly started with non-empty inheritable Linux process capabilities...
Arbitrary File Override in Docker Engine
GHSA-v4h8-794j-g8mm CVE-2015-3631 MODERATE published over 4 years ago • updated 13 days ago
Docker Engine before 1.6.1 allows local users to set arbitrary Linux Security Modules (LSM) and docker_t policies via an image that allows volumes ...
Arbitrary Code Execution in Docker
GHSA-5qgp-p5jc-w2rm CVE-2014-6407 HIGH published over 4 years ago • updated 2 days ago
Docker before 1.3.2 allows remote attackers to write to arbitrary files and execute arbitrary code via a (1) symlink or (2) hard link attack in an ...
Recent PRs (filtered by: Merged )
Bump the all-updates group with 6 updates

cirruslabs/cirrus-cli #954

28.4.0+incompatible → 28.5.0+incompatible Minor PR
Merged 8 months ago
cirruslabs
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

33

Active advisories
CRITICAL 2
HIGH 10
MODERATE 18
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
about 1 year ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,557 (46.8%)
Merged 824 (15.1%)
Closed 1,692 (30.9%)
PR Types
Major 2,063 (37.7%)
Minor 2,025 (37.0%)
Patch 983 (18.0%)