CVE-2026-93315
BuildKit proxy CA cleanup can be disrupted by build steps
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
When proxy networking with CA injection is enabled, a build can modify its CA bundle before cleanup. This may cause cleanup to block, operate outside the build rootfs, or fail without failing the build.
| CWE | CWE-367 |
| Vendor | moby |
| Product | buildkit |
| Published | Oct 5, 2026 |
Stay Ahead of the Next One
Get instant alerts for moby buildkit
Be the first to know when new unknown vulnerabilities affecting moby buildkit are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
moby / BuildKit
0.31.0 < 0.33.1
References
Credits
Zhenchen Wang (Institute of Software, Chinese Academy of Sciences), Shuo Huai, Songlin Zhu, Weijie Liu, and Yan Jia (Nankai University)