Critical Alert 6 Active Exploits Detected Today

CVE-2021-23758 Ajax.NET Professional Deserialization of Untrusted Data Vulnerability →
CVE-2015-3246 Red Hat Libuser Race Condition Vulnerability →
CVE-2015-5287 Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability →
CVE-2022-0995 Linux Kernel Out-of-Bounds Write Vulnerability →
CVE-2026-8452 Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability →
CVE-2019-1068 Microsoft SQL Server Remote Code Execution Vulnerability →
Powered by CVE Watchtower
×
August 28, 2026

CVE Watchtower


← Back to CVE List

CVE-2026-66384NVD

Vulnerability Summary

An authenticated user may write data outside the intended Docker cache path under specific remote-repository conditions.
Severity Level
MEDIUM(5.3)
Published Date
Aug 12, 2026
Last Modified
Aug 28, 2026
Exploitation Status
ACTIVE
EPSS Score (30-Day)
0.26%Probability
Root Weakness (CWE)
The software uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory.
CVSS v3.1 Base Metrics
Attack VectorNetwork
Attack ComplexityHigh
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityNone
IntegrityHigh
AvailabilityNone