CVE-2026-34040: Docker Engine
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows attackers to bypass authorization plugins (AuthZ). This issue has been patched in version 29.3.1.
Affected products
- Docker Engine: before 29.3.1 (fixed in 29.3.1)
Published 2026-03-31. Last modified 2026-06-17.