Loading market data...
← Back to CVE feed

CVE-2026-77179

UNKNOWN View on NVD ↗

Description

On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows symlinks when reopening an unlinked file from a stored path. A malicious guest can replace a parent directory with a symlink, escape the shared workspace, and read or modify arbitrary host files as the VMM user, potentially achieving host code execution.

Published: Sep 15, 2026 14:17 UTC Modified: Sep 15, 2026 22:17 UTC