CVE-2026-58053

critical

Description

Gitea act_runner with the Docker backend (through act 0.262.0) passes a workflow's container.options string to the Docker job container's HostConfig and, when configured with privileged: false, forces only the Privileged flag off while merging options such as --pid=host, --cap-add, and --security-opt unchanged. A user who can run a workflow on a Docker-backed runner can create a job container with host namespaces and broad capabilities and escape to the host as root despite privileged mode being disabled.

References

https://www.vulncheck.com/advisories/gitea-act-runner-container-hardening-bypass-via-workflow-container-options

https://github.com/bikini/exploitarium/tree/main/gitea-act-runner-container-options-poc

Details

Source: Mitre, NVD

Published: 2026-06-28

Updated: 2026-06-28

Risk Information

CVSS v2

Base Score: 9

Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 9.1

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Severity: Critical