Docker Buildkit <=v0.12.4, as used by the Docker engine. Exploitation of this issue can result in arbitrary file and directory deletion in the underlying host OS when building an image using a malicious Dockerfile or upstream image (i.e, when using FROM) https://snyk.io/blog/cve-2024-23652-buildkit-build-time-container-teardown-arbitrary-delete/ https://github.com/moby/buildkit/pull/4603 https://github.com/moby/buildkit/security/advisories/GHSA-4v98-7qmw-rqr8