diff --git a/content/manuals/desktop/release-notes.md b/content/manuals/desktop/release-notes.md index 9995308824e6..b8a8058049c6 100644 --- a/content/manuals/desktop/release-notes.md +++ b/content/manuals/desktop/release-notes.md @@ -66,6 +66,10 @@ For more frequently asked questions, see the [FAQs](/manuals/desktop/troubleshoo - Improved Docker Desktop startup time on Windows by several seconds when using WSL 2. - Fixed a bug on the **Models** > **Logs** screen which caused `docker-model` processes to accumulate on Windows each time the screen was visited. +### Security + +- Addressed [CVE-2026-33990](https://www.cve.org/cverecord?id=CVE-2026-33990), SSRF in Docker Model Runner OCI Registry Client + ## 4.66.1 {{< release-date date="2026-03-26" >}} diff --git a/content/manuals/security/security-announcements.md b/content/manuals/security/security-announcements.md index f0537111e5f0..8dd51fd270c9 100644 --- a/content/manuals/security/security-announcements.md +++ b/content/manuals/security/security-announcements.md @@ -12,6 +12,13 @@ toc_max: 2 [Subscribe to security RSS feed](/security/security-announcements/index.xml) +## Docker Desktop 4.67.0 security update: CVE-2026-33990 + +A vulnerability in Docker Desktop was fixed on March 30 in the [4.67.0](/manuals/desktop/release-notes.md#4670) release: + +- Addressed [CVE-2026-33990](https://www.cve.org/cverecord?id=CVE-2026-33990), SSRF in Docker Model Runner OCI Registry Client + + ## Docker Desktop 4.62.0 security update: CVE-2026-28400 A vulnerability in Docker Desktop was fixed on February 23 in the [4.62.0](/manuals/desktop/release-notes.md#4620) release: