Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files
The Hacker News published a report titled "Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files," dated September 17, 2026. According to the source, the flaw is rated critical and affects Docker Sandboxes on macOS. The described behavior is that malicious code running as a guest can both read and modify files on the macOS host, meaning the sandbox boundary does not prevent guest code from reaching host files. The provided source text contains only the headline and page markup, with no article body. As a result, the source does not state a CVE identifier, a specific affected Docker Sandboxes or Docker Desktop version, the mechanism behind the escape, the researcher or vendor who disclosed it, whether a patch exists, or any remediation guidance. It also does not specify which macOS versions are involved or how widely the sandboxes are deployed. Because those details are absent, this digest is limited to what the headline asserts: a critical Docker Sandboxes flaw permits malicious guest code to read and modify macOS host files.
Developers running untrusted code in Docker Sandboxes on macOS may have host files exposed to guest code, per the source.