Remote Code Execution Vulnerability in Apple Containerization
CVE-2026-65388

Currently unrated

Key Information:

Vendor

Apple

Vendor
CVE Published:
16 September 2026

What is CVE-2026-65388?

A vulnerability exists in Apple Containerization where a remote attacker controlling a container registry can manipulate a client's token request, directing it to a malicious host. This could lead to the unintended disclosure of the victim's registry credentials to the attacker. The vulnerability is addressed in version 0.41.0 of the containerization software.

Affected Version(s)

containerization 0 < 0.41.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.