Update Docker Desktop and Docker Sandboxes to the latest patched versions immediately. Ensure all systems running Docker Sandboxes on macOS are running the updated release. Review shared directory configurations and restrict host filesystem access where possible.
Quick answers
What is CVE-2026-77179?
Update Docker Desktop and Docker Sandboxes to the latest patched versions immediately. Ensure all systems running Docker Sandboxes on macOS are running the updated release. Review shared directory configurations and restrict host filesystem access where possible.
How severe is CVE-2026-77179?
critical
Is CVE-2026-77179 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-77179 be mitigated?
Update Docker Desktop and Docker Sandboxes to the latest patched versions immediately. Ensure all systems running Docker Sandboxes on macOS are running the updated release. Review shared directory configurations and restrict host filesystem access where possible.
CVSS
—
Vendor
Docker
Published
Sep 30, 2026 · 08:42
Patch
Unknown / not confirmed
Affected products
Docker Sandboxes
Mitigation
Update Docker Desktop and Docker Sandboxes to the latest patched versions immediately. Ensure all systems running Docker Sandboxes on macOS are running the updated release. Review shared directory configurations and restrict host filesystem access where possible.
Docker has confirmed a critical vulnerability in Docker Sandboxes for macOS tracked as CVE-2026-77179. Malicious code executing inside a Docker Sandboxes virtual machine can escape the shared project directory and read or modify arbitrary files on the host system, running with the rights of the host account that starts the virtual machine. The flaw affects versions prior to the patched release. Docker released security updates on September 15, 2026, to address the issue.