{"id":"CVE-2026-101998","title":"Docker Sandboxes could fail open while masking credentials in protected proxy responses","summary":"Docker Sandboxes could fail open while masking credentials in protected proxy responses. When a response-body read returned data together with an error, affected handlers could forward unmasked bytes. Code inside an authorized sandbox co…","severity":"none","cwe":["CWE-636"],"published":"2026-10-08","updated":"2026-10-08","sourceUpdated":"2026-10-08T20:46:35.260","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-101998","references":[{"url":"https://docs.docker.com/ai/sandboxes/","label":"security@docker.com"},{"url":"https://docs.docker.com/ai/sandboxes/configuration/credentials/#how-credential-injection-works","label":"security@docker.com"}],"tags":["nvd"],"ingestedAt":"2026-10-08T20:06:22.180Z","slug":"CVE-2026-101998","body":"## Overview\n\nDocker Sandboxes could fail open while masking credentials in protected proxy responses. When a response-body read returned data together with an error, affected handlers could forward unmasked bytes. Code inside an authorized sandbox could use this to recover host-managed OAuth access and refresh tokens or a derived Anthropic API key intended to remain outside the sandbox.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}