在判断是否对托管凭证响应进行屏蔽时,Docker Sandboxes 对 OAuth 令牌端点的 hostname 进行了区分大小写的比较,而请求路由则对 DNS hostname 进行了不区分大小写的处理。沙箱内的不受信代码可以利用大小写变体的 hostname 访问真实的提供商端点,从而绕过响应屏蔽机制。如果用户完成了 OAuth 流程,提供商的访问令牌和刷新令牌将以未屏蔽形式返回给沙箱,从而导致主机托管凭证泄露。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Docker | Docker Sandboxes | 0.21.0< 0.47.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Docker | Docker Sandboxes | 0.21.0 ~ 0.47.0 |
cpe:2.3:a:docker:docker_sandboxes:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105452 | 5.9 MEDIUM | Docker Sandboxes egress proxy could forward unrecognized client credentials to managed hos |
| CVE-2026-101998 | 5.9 MEDIUM | Fail-open response masking in Docker Sandboxes can expose proxy-managed credentials |
No comments yet