Remote Code Execution Vulnerability in Docker Desktop by Docker Inc.
CVE-2024-8695
9.8CRITICAL
What is CVE-2024-8695?
A vulnerability exists in Docker Desktop that enables remote code execution through a crafted extension description or changelog. This flaw can be exploited by malicious extensions, potentially allowing unauthorized code execution on affected systems. The vulnerability affects Docker Desktop versions prior to 4.34.2. Users are advised to update to the latest version to mitigate any security risks.