Direct Vulnerabilities

Known vulnerabilities in the docker package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Improper Output Neutralization for Logs

<0:25.0.16-1.amzn2023.0.3
  • H
Unchecked Input for Loop Condition

<0:25.0.16-1.amzn2023.0.3
  • H
Uncontrolled Search Path Element

<0:25.0.16-1.amzn2023.0.3
  • H
Excessive Platform Resource Consumption within a Loop

<0:25.0.16-1.amzn2023.0.3
  • H
Cross-site Scripting (XSS)

<0:25.0.16-1.amzn2023.0.2
  • H
Excessive Platform Resource Consumption within a Loop

<0:25.0.16-1.amzn2023.0.2
  • H
Improper Validation of Unsafe Equivalence in Input

<0:25.0.16-1.amzn2023.0.2
  • H
Cross-site Scripting (XSS)

<0:25.0.16-1.amzn2023.0.2
  • H
Cross-site Scripting (XSS)

<0:25.0.16-1.amzn2023.0.2
  • H
Cross-site Scripting (XSS)

<0:25.0.16-1.amzn2023.0.2
  • H
Incorrect Implementation of Authentication Algorithm

<0:25.0.16-1.amzn2023.0.1
  • H
Time-of-check Time-of-use (TOCTOU)

<0:25.0.16-1.amzn2023.0.1
  • H
Improper Validation of Specified Quantity in Input

<0:25.0.16-1.amzn2023.0.1
  • H
Improperly Implemented Security Check for Standard

<0:25.0.16-1.amzn2023.0.1
  • H
Missing Release of Resource after Effective Lifetime

<0:25.0.16-1.amzn2023.0.1
  • H
Improper Certificate Validation

<0:25.0.16-1.amzn2023.0.1
  • H
Improper Verification of Cryptographic Signature

<0:25.0.16-1.amzn2023.0.1
  • H
Improper Validation of Unsafe Equivalence in Input

<0:25.0.14-1.amzn2023.0.6
  • H
External Control of Assumed-Immutable Web Parameter

<0:25.0.14-1.amzn2023.0.6
  • H
Creation of Immutable Text Using String Concatenation

<0:25.0.14-1.amzn2023.0.6
  • H
Unchecked Input for Loop Condition

<0:25.0.14-1.amzn2023.0.6
  • H
CVE-2026-33811

<0:25.0.14-1.amzn2023.0.6
  • H
Cross-site Scripting (XSS)

<0:25.0.14-1.amzn2023.0.6
  • H
Unchecked Input for Loop Condition

<0:25.0.14-1.amzn2023.0.6
  • M
Incorrect Privilege Assignment

<0:25.0.14-1.amzn2023.0.5
  • M
Allocation of Resources Without Limits or Throttling

<0:25.0.14-1.amzn2023.0.5
  • H
Excessive Platform Resource Consumption within a Loop

<0:25.0.14-1.amzn2023.0.4
  • H
Cross-site Scripting (XSS)

<0:25.0.14-1.amzn2023.0.4
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.14-1.amzn2023.0.4
  • H
Reliance on Untrusted Inputs in a Security Decision

<0:25.0.14-1.amzn2023.0.4
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.14-1.amzn2023.0.4
  • H
Expected Behavior Violation

<0:25.0.14-1.amzn2023.0.4
  • H
Multiple Locks of a Critical Resource

<0:25.0.14-1.amzn2023.0.4
  • H
Time-of-check Time-of-use (TOCTOU)

<0:25.0.14-1.amzn2023.0.4
  • H
Compiler Optimization Removal or Modification of Security-critical Code

<0:25.0.14-1.amzn2023.0.4
  • M
Improper Validation of Syntactic Correctness of Input

<0:25.0.14-1.amzn2023.0.3
  • M
Cross-site Scripting (XSS)

<0:25.0.14-1.amzn2023.0.3
  • M
Incorrect Privilege Assignment

<0:25.0.14-1.amzn2023.0.3
  • M
Directory Traversal

<0:25.0.14-1.amzn2023.0.3
  • M
Allocation of Resources Without Limits or Throttling

<0:25.0.14-1.amzn2023.0.1
  • M
Out-of-bounds Read

<0:25.0.14-1.amzn2023.0.1
  • M
Allocation of Resources Without Limits or Throttling

<0:25.0.14-1.amzn2023.0.2
  • M
CVE-2025-68121

<0:25.0.14-1.amzn2023.0.2
  • M
Allocation of Resources Without Limits or Throttling

<0:25.0.14-1.amzn2023.0.2
  • M
Missing Required Cryptographic Step

<0:25.0.14-1.amzn2023.0.2
  • M
Improper Certificate Validation

<0:25.0.13-1.amzn2023.0.3
  • M
Excessive Platform Resource Consumption within a Loop

<0:25.0.14-1.amzn2023.0.1
  • H
Reachable Assertion

<0:25.0.13-1.amzn2023.0.2
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.13-1.amzn2023.0.2
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.13-1.amzn2023.0.2
  • H
Improper Validation of Syntactic Correctness of Input

<0:25.0.13-1.amzn2023.0.2
  • H
CVE-2025-58186

<0:25.0.13-1.amzn2023.0.2
  • H
Creation of Immutable Text Using String Concatenation

<0:25.0.13-1.amzn2023.0.2
  • H
Improper Output Neutralization for Logs

<0:25.0.13-1.amzn2023.0.2
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.13-1.amzn2023.0.2
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.13-1.amzn2023.0.2
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.13-1.amzn2023.0.2
  • L
Missing Initialization of Resource

<0:25.0.13-1.amzn2023.0.1
  • M
Improper Certificate Validation

<0:25.0.8-1.amzn2023.0.5
  • M
CVE-2025-4673

<0:25.0.8-1.amzn2023.0.5
  • M
Integer Overflow or Wraparound

<0:25.0.8-1.amzn2023.0.4
  • H
HTTP Request Smuggling

<0:25.0.8-1.amzn2023.0.3
  • H
Asymmetric Resource Consumption (Amplification)

<0:25.0.8-1.amzn2023.0.3
  • H
Improper Validation of Syntactic Correctness of Input

<0:25.0.8-1.amzn2023.0.2
  • H
Allocation of Resources Without Limits or Throttling

<0:25.0.8-1.amzn2023.0.2
  • L
Improper Handling of Exceptional Conditions

<0:25.0.8-1.amzn2023.0.1
  • H
CVE-2024-36620

<0:25.0.6-1.amzn2023.0.1
  • H
CVE-2024-36623

<0:25.0.6-1.amzn2023.0.1
  • M
Misinterpretation of Input

<0:25.0.3-1.amzn2023.0.2
  • H
Incorrect Resource Transfer Between Spheres

<0:25.0.6-1.amzn2023.0.1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:25.0.6-1.amzn2023.0.1
  • H
Information Exposure

<0:25.0.3-1.amzn2023.0.1
  • H
Reliance on Untrusted Inputs in a Security Decision

<0:25.0.6-1.amzn2023.0.1
  • H
Race Condition

<0:25.0.3-1.amzn2023.0.1
  • H
Incorrect Authorization

<0:25.0.3-1.amzn2023.0.1
  • H
Directory Traversal

<0:25.0.3-1.amzn2023.0.1
  • H
Origin Validation Error

<0:25.0.3-1.amzn2023.0.1
  • H
Resource Exhaustion

<0:25.0.3-1.amzn2023.0.1
  • H
Improper Check for Unusual or Exceptional Conditions

<0:25.0.3-1.amzn2023.0.1
  • H
Resource Exhaustion

<0:24.0.5-1.amzn2023.0.2
  • H
Resource Exhaustion

<0:24.0.5-1.amzn2023.0.1
  • H
HTTP Response Splitting

<0:24.0.5-1.amzn2023.0.1
  • H
Resource Exhaustion

<0:20.10.25-1.amzn2023.0.1
  • L
CVE-2022-36109

<0:20.10.17-1.amzn2023.0.6