Link following in Docker Sandboxes - CVE-2026-77179
Published: September 16, 2026
Vulnerability details
The vulnerability allows a local user to read or modify arbitrary host files.
The vulnerability exists due to improper handling of symbolic links in the virtio-fs host server on macOS when reopening an unlinked file from a stored path. A local user can replace a parent directory with a symbolic link to escape the shared workspace and read or modify arbitrary host files.
This may potentially lead to code execution on the host.