CVE-2022-31647 | Docker Desktop up to 4.5.x on Windows dockerBackendV2 API DataFolder symlink
A vulnerability classified as critical was found in Docker Desktop up to 4.5.x on Windows. This vulnerability affects unknown code of the component dockerBackendV2 API. The manipulation of the argument DataFolder leads to symlink following.
This vulnerability was named CVE-2022-31647. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.