Medium severity4.3NVD Advisory· Published Aug 20, 2026· Updated Aug 20, 2026
CVE-2026-64777
CVE-2026-64777
Description
A malicious builder peer may be able to request an in-context file by name from the host and receive the contents of whatever the name resolves to, even when it resolves outside the build context. This vulnerability is addressed in container version 1.2.0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: >=1.2.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.