A security flaw in Tecnativa docker-socket-proxy allows unintended read access to container data when the proxy is configured with CONTAINERS=1, even if POST=0 is set. Public reports and a proof of concept show that the proxy's HAProxy rules broadly permit the Docker API /containers/* namespace, enabling an attacker with access behind the proxy to list containers and reach sensitive GET endpoints that were not meant to be exposed.
The exposed endpoints reportedly include /archive, /export, /logs, and /top, which can be used to read arbitrary files from containers, export full container filesystems, inspect process arguments, and retrieve logs. An open issue states there is no built-in mitigation short of manually editing the HAProxy configuration, while a linked pull request proposes restricting filesystem-related exposure through more granular controls such as ALLOW_ARCHIVE, ALLOW_EXPORT, and ALLOW_LOGS and corresponding HAProxy configuration changes.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
A pull request titled "Fix: Prevent filesystem exposure when CONTAINERS=1" was opened to remediate the reported exposure in docker-socket-proxy. The proposed changes reference affected paths and introduce mitigation-related configuration controls including ALLOW_ARCHIVE, ALLOW_EXPORT, and ALLOW_LOGS.
A public proof-of-concept showed that a docker-socket-proxy deployment configured with CONTAINERS=1 and POST=0 still exposes dangerous read-only endpoints such as /archive, /export, /top, and /logs. The PoC demonstrated listing containers and reading files, exporting filesystems, viewing process arguments, and retrieving logs using only GET requests.
A security issue was reported in docker-socket-proxy stating that enabling CONTAINERS=1 allows broad access to sensitive GET-only /containers subpaths, enabling arbitrary file reads, filesystem export, process inspection, and log access across containers. The report attributes the flaw to an HAProxy prefix-match rule and proposes adding explicit deny rules and new flags such as ALLOW_EXPORT, ALLOW_ARCHIVE, and ALLOW_LOGS.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
gist.github.com
Open sourcegithub.com
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.