Vulnerabilities > Docker > Desktop > 4.31.1

DATE CVE VULNERABILITY TITLE RISK
2025-04-28 CVE-2025-3224 Unspecified vulnerability in Docker Desktop
A vulnerability in the update process of Docker Desktop for Windows versions prior to 4.41.0 could allow a local, low-privileged attacker to escalate privileges to SYSTEM.
local
low complexity
docker
7.8
2024-09-12 CVE-2024-8695 Unspecified vulnerability in Docker Desktop
A remote code execution (RCE) vulnerability via crafted extension description/changelog could be abused by a malicious extension in Docker Desktop before 4.34.2.
network
low complexity
docker
critical
9.8
2024-09-12 CVE-2024-8696 Unspecified vulnerability in Docker Desktop
A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a malicious extension in Docker Desktop before 4.34.2.
network
low complexity
docker
critical
9.8