An open index of dependabot pull requests across open source projects.

github.com/docker/docker

Ecosystem:
go
Package URL:
pkg:golang/github.com/docker/docker
Total PRs:
5,376 Dependabot PRs
Latest PR:
about 20 hours ago
Unique Repositories:
1,784 repositories
Unique Repos (30 days):
14 repositories
Security Advisories
Moby (Docker Engine) started with non-empty inheritable Linux process capabilities
GHSA-2mm7-x5h6-5pvq CVE-2022-24769 MODERATE published almost 2 years ago • updated 1 day ago
### Impact A bug was found in Moby (Docker Engine) where containers were incorrectly started with non-empty inheritable Linux process capabilities...
Arbitrary Code Execution
GHSA-997c-fj8j-rq5h CVE-2014-9357 HIGH published about 4 years ago • updated 28 days ago
Docker 1.3.2 allows remote attackers to execute arbitrary code with root privileges via a crafted (1) image or (2) build in a Dockerfile in an LZMA...
Symlink Attack in Libcontainer and Docker Engine
GHSA-g7v2-2qxx-wjrw CVE-2015-3627 MODERATE published about 4 years ago • updated about 1 month ago
Libcontainer and Docker Engine before 1.6.1 opens the file-descriptor passed to the pid-1 process before performing the chroot, which allows local ...
Moby's external DNS requests from 'internal' networks could lead to data exfiltration
GHSA-mq39-4gv4-mvpx CVE-2024-29018 MODERATE published almost 2 years ago • updated 2 days ago
Moby is an open source container framework originally developed by Docker Inc. as Docker. It is a key component of Docker Engine, Docker Desktop, a...
Authz zero length regression
GHSA-v23v-6jw2-98fq CVE-2024-41110 CRITICAL published over 1 year ago • updated 6 days ago
A security vulnerability has been detected in certain versions of Docker Engine, which could allow an attacker to bypass [authorization plugins (Au...
Recent PRs (filtered by: Open , Patch PRs )
fix(deps): bump the external group across 1 directory with 26 updates

opentdf/platform #3066

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 8 days ago 6 comments
opentdf
chore: bump the engine group across 2 directories with 52 updates

sipsma/dagger #1232

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 12 days ago 1 comment
sipsma
fix(deps): bump the external group across 1 directory with 21 updates

opentdf/platform #3038

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 19 days ago 1 comment
opentdf
chore: bump the engine group across 2 directories with 50 updates

sipsma/dagger #1226

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 23 days ago 1 comment
sipsma
chore: bump the engine group across 2 directories with 48 updates

sipsma/dagger #1220

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 30 days ago 1 comment
sipsma
chore: bump the engine group across 2 directories with 47 updates

sipsma/dagger #1216

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 1 month ago 2 comments
sipsma
chore: bump the engine group across 2 directories with 48 updates

sipsma/dagger #1215

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 1 month ago 1 comment
sipsma
chore(deps): Bump the go_modules group across 1 directory with 2 updates

devantler-tech/ksail #1702

28.3.1+incompatible → 28.3.3+incompatible Patch PR
Open about 1 month ago 1 comment
devantler-tech
Bump the go-minor group across 1 directory with 15 updates

Nuvix-Tech/cli #23

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 1 month ago 1 comment
Nuvix-Tech
Bump the docker group across 1 directory with 5 updates

dependabot/cli #555

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 1 month ago 2 comments
dependabot
chore: bump the engine group across 2 directories with 47 updates

sipsma/dagger #1201

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open about 2 months ago 1 comment
sipsma
Bump the go_modules group across 31 directories with 13 updates

naywint3/gitpod #2

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 2 months ago 1 comment
naywint3
chore(deps): bump the go_modules group across 2 directories with 3 updates

gnolang/gno #4982

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 2 months ago 2 comments
gnolang
chore: bump the engine group across 2 directories with 42 updates

shykes/dagger #464

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 2 months ago 1 comment
shykes
Bump the go-minor group across 1 directory with 11 updates

Nuvix-Tech/cli #19

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 2 months ago 2 comments
Nuvix-Tech
chore(deps): bump the engine group across 2 directories with 39 updates

nludd25/dagger #9

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 2 months ago 1 comment
nludd25
build(deps): Bump the all-go group across 5 directories with 6 updates

evstack/ev-node #2881

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 3 comments
evstack
chore: bump the engine group across 2 directories with 36 updates

sipsma/dagger #1175

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 2 comments
sipsma
build(deps): bump the go_modules group across 1 directory with 6 updates

KunalSin9h/meltcd #122

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 3 months ago 2 comments
KunalSin9h
build(deps): Bump the all-go group across 5 directories with 7 updates

evstack/ev-node #2854

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 3 comments
evstack
chore(deps): bump the go group across 1 directory with 19 updates

envoyproxy/ai-gateway #1534

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 1 comment
envoyproxy
Bump the golang-dependencies group across 2 directories with 3 updates

ls1intum/hades #318

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 2 comments
ls1intum
chore(deps): bump the dependencies group across 1 directory with 6 updates

openfga/openfga #2798

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 2 comments
openfga
build(deps): bump the dependencies group in /systemtest with 5 updates

elastic/apm-server #19529

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 2 comments
elastic
chore: bump the golang group across 1 directory with 12 updates

AndiDog/skaffold #53

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 1 comment
AndiDog
chore: bump the engine group across 2 directories with 25 updates

sipsma/dagger #1166

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 1 comment
sipsma
deps(deps): bump the go-dependencies group with 3 updates

avivsinai/jenkins-cli #11

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 1 comment
avivsinai
chore(deps): bump the minor group across 1 directory with 5 updates

containifyci/engine-ci #310

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 24 comments
containifyci
Bump the go_modules group across 1 directory with 2 updates

devfile/registry-operator #111

25.0.6+incompatible → 25.0.13+incompatible Patch PR
Open 3 months ago 5 comments
devfile
Bump the go-docker-dependencies group with 2 updates

tektoncd/cli #2639

28.5.1+incompatible → 28.5.2+incompatible Patch PR
Open 3 months ago 2 comments
tektoncd
Package Details
Name: github.com/docker/docker
Ecosystem: go
PURL Type: golang
Package URL: pkg:golang/github.com/docker/docker
JSON API: View JSON
Security Advisories

29

Active advisories
CRITICAL 2
HIGH 8
MODERATE 16
LOW 3
View All golang Advisories
Package Information
Description:

Repository: https://github.com/docker/docker
Homepage: https://github.com/docker/docker
Latest Release: v28.2.2+incompatible
9 months ago
Dependent Repos: 40,103
Dependent Packages: 16,935
Ranking: Top 0.0289% by dependent repos Top 0.0137% by dependent pkgs
PR Status
Open 2,531 (47.1%)
Merged 824 (15.3%)
Closed 1,626 (30.3%)
PR Types
Minor 2,012 (37.4%)
Major 2,002 (37.2%)
Patch 965 (18.0%)