Docker Desktop before 4.23.0 allows Access Token theft via a crafted extension icon URL. This issue affects Docker Desktop: before 4.23.0.
2023-09-25T16:15:15.857
2024-11-21T08:41:13.043
Modified
CVSSv3.1: 8.0 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | docker | docker_desktop | < 4.23.0 | Yes |