Security Bypass in BuildKit Tool by Moby Technologies
CVE-2026-61711
5.3MEDIUM
What is CVE-2026-61711?
A security bypass vulnerability in BuildKit allows a crafted build request to disable Seccomp and AppArmor protections within build containers. Prior to version 0.31.1, when an unsupported SecurityMode value was submitted, the system treated it as a non-sandbox mode without enforcing necessary security entitlements. This misconfiguration increases the risk of exposure to malicious code execution, despite Linux capabilities still being restricted. The issue has been addressed in version 0.31.1.
Affected Version(s)
buildkit < 0.31.1
