๐Ÿ” CVE Alert

CVE-2026-28909

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Users who connect to malicious registries with hostnames matching the bypass patterns will have their registry credentials exposed in plaintext. This issue is fixed in container version 0.12.3.

Vendor apple
Product macos
Ecosystems
Industries
Technology
Published Apr 30, 2026
Stay Ahead of the Next One

Get instant alerts for apple macos

Be the first to know when new unknown vulnerabilities affecting apple macos are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Apple / macOS
0.12.1 < 0.12.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/apple/container/security/advisories/GHSA-m5rp-xcpf-r8m7