
CVE-2026-53988 is a maximum severity flaw in Finsys's Dockhand, CVSS 10.0. A null webhook secret lets unauthenticated attackers force git clone and docker builds, and with write access to the tracked branch it escalates to container escape and full host takeover. VulnTracker recommends upgrading to Dockhand 1.0.40 immediately, this one needs no login at all. Details: http://vulntracker.io/cves/CVE-2026-53988 #Dockhand #CVE #InfoSec #DevOps
