External Publication
Visit Post

Docker CVE-2026-34040 Lets Attackers Bypass Authorization and Gain Host Access

The Hacker News | #1 Trusted Source for Cybersecurity News [Uno… April 7, 2026
Source
A high-severity security vulnerability has been disclosed in Docker Engine that could permit an attacker to bypass authorization plugins (AuthZ) under specific circumstances. The vulnerability, tracked as CVE-2026-34040 (CVSS score: 8.8), stems from an incomplete fix for CVE-2024-41110, a maximum-severity vulnerability in the same component that came to light in July 2024. "

Discussion in the ATmosphere

Loading comments...