The Hotdog Project maintains a narrowly scoped product focused on privilege and execution management, with its vulnerability surface concentrated in the core Hotdog application. The recurring exposure reflects issues in privilege escalation and improper access control, which are structural concerns for any tool handling elevated execution contexts. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hotdog Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-3101HIGH Hotdog, prior to v1.0.1, did not mimic the capabilities or the SELinux label of the target JVM process. This would allow a container to gain full privileges on the host, bypassing | Apr 19, 2022 | 8.8 | 28 | NO | NO |
CVE-2022-0071HIGH Incomplete fix for CVE-2021-3101. Hotdog, prior to v1.0.2, did not mimic the resource limits, device restrictions, or syscall filters of the target JVM process. This would allow a | Apr 19, 2022 | 8.8 | 23 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hotdog Project.
Media articles that mention a CVE ID that affects a product developed by Hotdog Project — matched by CVE ID, not by vendor name.