AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-9164

UNKNOWN · CVSS N/A EPSS 0.10%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-10-27 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It affects Docker.

CVE
CVE-2025-9164
Severity
UNKNOWN
CVSS
N/A
EPSS
0.10%
Docker

Original NVD Description

Docker Desktop Installer.exe is vulnerable to DLL hijacking due to insecure DLL search order. The installer searches for required DLLs in the user's Downloads folder before checking system directories, allowing local privilege escalation through malicious DLL placement.This issue affects Docker Desktop: through 4.48.0.