CVE-2023-0627: Docker Desktop

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Docker Desktop 4.11.x allows --no-windows-containers flag bypass via IPC response spoofing which may lead to Local Privilege Escalation (LPE).This issue affects Docker Desktop: 4.11.X.

Affected products

  • Docker Docker Desktop: from 4.11.0, before 4.12.0 (fixed in 4.12.0)

Published 2023-09-25. Last modified 2026-06-17.