MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 4 h ago, last 4 h ago, peak #6

Critical vulnerability disclosed in Docker update tool Tugtainer

Original: 🚨 CVE-2026-55494 — CVSS 9.8 CRITICAL Tugtainer is a self-hosted app for automating updates of Docker containers. Prior t

A critical flaw, CVE-2026-55494 with a CVSS score of 9.8, has been disclosed in Tugtainer, a self-hosted application for automating Docker container updates. Versions before 1.30.4 expose unauthenticated access to Docker management APIs when the AGENT_SECRET setting is not configured. Self-hosting and security communities are urging users to update immediately, warning that unpatched instances could let attackers take control of containers.

Why now: Sysadmins and self-hosters are being warned to patch a maximum-severity flaw in a widely used container management tool.

TugtainerDockerCVE-2026-55494

Open on mastodon →

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/513648