Docker Desktop Zero-Day Allows Container-to-Host Privilege Escalation; Vendor Rejected Fix
A 0-day vulnerability in Docker Desktop for Windows lets attackers with high-privileged container access escalate to arbitrary code execution on the host, after Docker rejected the report as outside its threat model.