Last seen February 9, 2026

Meta Remote Code Execution Vulnerability

A critical-severity vulnerability, named DockerDash, in Docker's Ask Gordon AI assistant allows for Remote Code Execution (RCE) in Docker environments. This is achieved through "meta-context injection," where malicious instructions embedded in Docker image metadata labels are executed by the Model Context Protocol (MCP) Gateway without proper validation.

Technical Severity
Low severity
Lifecycle Status

STABLE

What Happened

A critical-severity vulnerability, named DockerDash, in Docker's Ask Gordon AI assistant allows for Remote Code Execution (RCE) in Docker environments. This is achieved through "meta-context injection," where malicious instructions embedded in Docker image metadata labels are executed by the Model Context Protocol (MCP) Gateway without proper validation.

Why This Matters

The evidence matters to defenders using Meta because it could let an attacker run code in affected environments.

Recommended Action

Confirm whether rce is present in your environment and review vendor guidance for this report. Apply available patches or mitigations if your deployment matches the described conditions.

Exposure

My Interests Exposure

Exposure unknown

Recommended Response
Last Seen

Feb 09, 2026 05:30

Exposure reason: This incident does not currently match a technology in My Interests.

Exploitation status: UNKNOWN

Primary entities:

DockerMetaAsk Gordon AI assistantDocker environmentsDocker image metadata labelsModel Context Protocol (MCP) Gateway

Timeline

  • Incident first seen
    Feb 09, 2026 05:30

    BugSkan first recorded this incident.

  • ⚡ Weekly Recap: AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and More - The Hacker News
    Feb 09, 2026 05:30

    thehackernews.com · Vulnerability

Sources

⚡ Weekly Recap: AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and More - The Hacker News

thehackernews.com · Feb 09, 2026 05:30

A critical-severity vulnerability, named DockerDash, in Docker's Ask Gordon AI assistant allows for Remote Code Execution (RCE) in Docker environments. This is achieved through "meta-context injection," where malicious instructions embedded in Docker image metadata labels are executed by the Model Context Protocol (MCP) Gateway without proper validation.

Open publisher source

Other BugSkan incidents that share identifiers, products, or vendors with this report.

My Interests Match

Want personalized relevance?

Create an account to see which incidents overlap with your interests.

← Back to incident intelligence