Docker cp Vulnerability Enables Container Escape and Host Takeover (CVE-2026-17106)

jedisct1 · x · 2026-08-11

Imperva Threat Research uncovered CVE-2026-17106 (CopyEscape), a severe container-to-host arbitrary file-write vulnerability in Docker's docker cp command.

A malicious container could exploit the file copy process to create or overwrite files outside the intended destination on the host machine, potentially leading to code execution or root privilege escalation.

Original post →

More from Infra

Infra channel →