๐Ÿ” CVE Alert

CVE-2026-18171

UNKNOWN 0.0

Docker Sandboxes read-only runtime mount writable through its shared-export alias

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Docker Sandboxes (sbx) applies the read-only intent of a runtime host mount to the in-guest container bind only: the underlying virtio-fs host-edge grant is added to the sandbox's policy-share allowlist with no access mode. The directory stays writable at its shared-export path, so unprivileged code inside the sandbox can derive that path and write to a host directory the operator attached read-only.

CWE CWE-863
Vendor docker
Product docker sandboxes
Ecosystems
Industries
Technology
Published Aug 12, 2026
Stay Ahead of the Next One

Get instant alerts for docker docker sandboxes

Be the first to know when new unknown vulnerabilities affecting docker docker sandboxes are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Docker / Docker Sandboxes
0.35.0 โ‰ค 0.38.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
docs.docker.com: https://docs.docker.com/ai/sandboxes/ docs.docker.com: https://docs.docker.com/ai/sandboxes/architecture/

Credits

Robbe Van Roey of Aikido Security