importantSYS.SOURCE: The Hacker News• 2026-09-17T21:07:56+05:30
Critical Docker Sandbox Vulnerability Allows Malicious Code to Access macOS Host Files
A critical Docker sandbox vulnerability (CVE-2026-77179) allows malicious guest code to escape sandbox restrictions and access arbitrary files on macOS hosts. The flaw was patched in Docker Sandboxes 0.42.0, with no confirmed exploitation reported.
Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere else on the host, Docker warns in a security announcement on September 15.
The escape runs with the rights of the host account that runs the virtual machine. The flaw, CVE-2026-77179, is rated Critical, affects versions
*** END OF TRANSMISSION ***