Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
Docker Model Runner (DMR) is software used to manage, run, and deploy AI models using Docker. Prior to version 1.1.25, Docker Model Runner contains an SSRF vulnerability in its OCI registry token exchange flow. When pulling a model, Model Runner follows the realm URL from the registry's WWW-Authenticate header without validating the scheme, hostname, or IP range. A malicious OCI registry can set the realm to an internal URL (e.g., http://127.0.0.1:3000/), causing Model Runner running on the host to make arbitrary GET requests to internal services and reflect the full response body back to the caller. Additionally, the token exchange mechanism can relay data from internal services back to the attacker-controlled registry via the Authorization: Bearer header. This issue has been patched in version 1.1.25. For Docker Desktop users, enabling Enhanced Container Isolation (ECI) blocks container access to Model Runner, preventing exploitation. However, if the Docker Model Runner is exposed to localhost over TCP in specific configurations, the vulnerability is still exploitable. Join the discussion | CVE Database V5 | 04/01/2026, 16:17:40 UTC Added: 04/01/2026, 19:29:40 UTC |
Docker Model Runner versions prior to 1.0.16 expose an unauthenticated POST endpoint that allows attackers with network access to inject arbitrary runtime flags to the underlying inference server. This can be exploited to overwrite arbitrary files accessible to the Model Runner process, including critical Docker Desktop VM disk files, potentially destroying containers, images, volumes, and build history. The vulnerability is fixed in Docker Model Runner 1.0.16 and Docker Desktop 4.61.0. A workaround involves enabling Enhanced Container Isolation to block container access to Model Runner, though certain configurations exposing Model Runner over localhost TCP remain vulnerable. Join the discussion | CVE Database V5 | 02/27/2026, 21:06:12 UTC Added: 02/27/2026, 21:26:11 UTC |
Showing 1 to 2 of 2 results