Docker Desktop CVE-2023-0628 Command Injection Vulnerability

description-logoDescription

Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container during initialization by tricking a user to open a crafted malicious docker-desktop:// URL.

affected-products-logoAffected Applications

Docker Desktop

CVE References

CVE-2023-0628