CVE-2026-93319

moby BuildKit

Published 5 Oct 2026 · updated 5 Oct 2026 · Received

5.7 Medium · CVSS 4.0, docker.com

Description

A malicious external BuildKit frontend can send requests using the internal API that can create conditions for a data race that can cause the BuildKit daemon to panic.

References