Security Advisory

CVE-2026-64777

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-20 18:53:12
Last updated 2026-08-20 19:47:09
Assigner apple
CVSS score 4.3
State PUBLISHED

Description

A malicious builder peer may be able to request an in-context file by name from the host and receive the contents of whatever the name resolves to, even when it resolves outside the build context. This vulnerability is addressed in container version 1.2.0.