Docker 沙箱在保护代理响应中掩盖凭据时,可能会发生“开放失败”(fail-open)的情况。当响应体读取操作返回数据的同时伴随错误时,受影响的处理器可能会转发未掩盖的字节。授权沙箱内的代码可以利用此漏洞,恢复由主机管理的 OAuth 访问令牌和刷新令牌,或恢复本应保留在沙箱之外的派生 Anthropic API 密钥。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Docker | Docker Sandboxes | 0.21.0< 0.47.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Docker | Docker Sandboxes | 0.21.0 ~ 0.47.0 |
cpe:2.3:a:docker:docker_sandboxes:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105570 | 6.7 MEDIUM | Docker Sandboxes OAuth response masking could be bypassed with a case-variant token host |
| CVE-2026-105452 | 5.9 MEDIUM | Docker Sandboxes egress proxy could forward unrecognized client credentials to managed hos |
No comments yet