logo

an offensive look at docker desktop extensions

ID: b4a19e47-28a9-5f47-af34-5f6505acaae5

STIX ID: report--b4a19e47-28a9-5f47-af34-5f6505acaae5

Feed Name: SensePost Blog

Threat Score
60/100

Date Published: 2023-05-30

Date Updated: 2026-04-30

...
...

This research examines security weaknesses in Docker Desktop Extensions, showing a proof-of-concept command-injection via the extension SDK (docker.cli.exec) that can execute arbitrary host commands, and outlining persistence/privilege risks from long-running extension service containers that do not appear in docker ps and can mount host paths or the docker socket. The post documents how to reproduce the issue, inspect extension artifacts (metadata.json, docker-compose.yml, UI, service containers), and highlights the risk that malicious or obfuscated extensions—installable from registries or the Marketplace—could run code on the host; the author reported the finding to Docker.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.