[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"article-dockers-latest-releases-security-compose-en":3,"article-related-dockers-latest-releases-security-compose-en":34,"series-industry-bb70741d-b446-4f24-8828-94d571538e3b":79},{"id":4,"slug":5,"title":6,"content":7,"summary":8,"source":9,"source_url":10,"author":11,"image_url":12,"cover_image":12,"category":13,"language":14,"translated_content":11,"related_article_id":15,"keywords":16,"key_takeaways":27,"views":31,"created_at":32,"published_at":33,"topic_cluster_id":11},"bb70741d-b446-4f24-8828-94d571538e3b","dockers-latest-releases-security-compose-en","Docker’s latest releases now center security and Compose","\u003Cp>What changed in the latest \u003Ca href=\"\u002Ftag\u002Fdocker\">Docker\u003C\u002Fa> releases, and which updates matter first?\u003C\u002Fp>\u003Cp data-speakable=\"summary\">Docker’s newest releases mix security fixes, Compose changes, and \u003Ca href=\"\u002Ftag\u002Fapi\">API\u003C\u002Fa> updates that operators should review now.\u003C\u002Fp>\u003Ctable>\u003Cthead>\u003Ctr>\u003Cth>Item\u003C\u002Fth>\u003Cth>Release\u003C\u002Fth>\u003Cth>Type\u003C\u002Fth>\u003Cth>Notable change\u003C\u002Fth>\u003C\u002Ftr>\u003C\u002Fthead>\u003Ctbody>\u003Ctr>\u003Ctd>Docker 29.7.2\u003C\u002Ftd>\u003Ctd>6d ago\u003C\u002Ftd>\u003Ctd>Patch\u003C\u002Ftd>\u003Ctd>Fixes panics, pull regressions, networking issues\u003C\u002Ftd>\u003C\u002Ftr>\u003Ctr>\u003Ctd>Docker Compose v5.4.0\u003C\u002Ftd>\u003Ctd>Aug 3, 2026\u003C\u002Ftd>\u003Ctd>Patch\u003C\u002Ftd>\u003Ctd>New reconciliation model for resources\u003C\u002Ftd>\u003C\u002Ftr>\u003Ctr>\u003Ctd>Docker 29.7.0\u003C\u002Ftd>\u003Ctd>Jul 30, 2026\u003C\u002Ftd>\u003Ctd>Security\u003C\u002Ftd>\u003Ctd>Embedded containerd, CVE-2026-17106 fix\u003C\u002Ftd>\u003C\u002Ftr>\u003Ctr>\u003Ctd>Docker Compose v5.3.0\u003C\u002Ftd>\u003Ctd>Jul 15, 2026\u003C\u002Ftd>\u003Ctd>Patch\u003C\u002Ftd>\u003Ctd>Native init containers\u003C\u002Ftd>\u003C\u002Ftr>\u003Ctr>\u003Ctd>Docker 29.6.0\u003C\u002Ftd>\u003Ctd>Jul 15, 2026\u003C\u002Ftd>\u003Ctd>Feature\u003C\u002Ftd>\u003Ctd>New API endpoint, image attestations\u003C\u002Ftd>\u003C\u002Ftr>\u003C\u002Ftbody>\u003C\u002Ftable>\u003Ch2>1. Docker Engine 29.7.2\u003C\u002Fh2>\u003Cp>Docker Engine 29.7.2 is the patch most likely to help teams already seeing runtime trouble. It fixes panics in \u003Ccode>docker service\u003C\u002Fcode> commands, image pull regressions tied to absolute hardlink targets, and networking issues that could slow down day-to-day work.\u003C\u002Fp>\n\u003Cfigure class=\"my-6\">\u003Cimg src=\"https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786557770638-01iq.png\" alt=\"Docker’s latest releases now center security and Compose\" class=\"rounded-xl w-full\" loading=\"lazy\" \u002F>\u003C\u002Ffigure>\n\u003Cp>The practical value here is stability. If your cluster has been behaving oddly after recent upgrades, this release is the first one to check because it bundles fixes across service control, packaging, and network compatibility.\u003C\u002Fp>\u003Cul>\u003Cli>Fixes panics in service commands\u003C\u002Fli>\u003Cli>Addresses image pull regressions\u003C\u002Fli>\u003Cli>Includes networking improvements\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>2. Docker Compose v5.4.0\u003C\u002Fh2>\u003Cp>\u003Ca href=\"https:\u002F\u002Fdocs.docker.com\u002Fcompose\u002F\" target=\"_blank\" rel=\"noopener noreferrer\">Docker Compose\u003C\u002Fa> v5.4.0 changes how resources are reconciled, with a new model for volumes and networks. That matters if you run multi-container apps where Compose must keep declared state and observed state aligned over time.\u003C\u002Fp>\u003Cp>It also fixes smaller but useful issues, including zero-replica services during hashing and warnings when service selection is ignored. For teams that treat Compose as infrastructure code, this release is about making state handling more predictable.\u003C\u002Fp>\u003Cul>\u003Cli>New reconciliation model for resources\u003C\u002Fli>\u003Cli>Better handling of volumes and networks\u003C\u002Fli>\u003Cli>Fixes zero-replica hashing behavior\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>3. Docker 29.7.0\u003C\u002Fh2>\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.docker.com\u002Fproducts\u002Fdocker-desktop\u002F\" target=\"_blank\" rel=\"noopener noreferrer\">Docker\u003C\u002Fa> 29.7.0 is the headline release in this batch because it introduces experimental embedded containerd inside the daemon. That can simplify management for some environments, but it is still experimental, so it is one to test before rolling out broadly.\u003C\u002Fp>\n\u003Cfigure class=\"my-6\">\u003Cimg src=\"https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786557774669-y6of.png\" alt=\"Docker’s latest releases now center security and Compose\" class=\"rounded-xl w-full\" loading=\"lazy\" \u002F>\u003C\u002Ffigure>\n\u003Cp>This release also patches CVE-2026-17106, which affects Docker Engine and related components. Add in networking reliability fixes and dependency updates for Go and runc, and this becomes the release security teams will want to prioritize.\u003C\u002Fp>\u003Cul>\u003Cli>Experimental embedded containerd\u003C\u002Fli>\u003Cli>Fixes CVE-2026-17106\u003C\u002Fli>\u003Cli>Updates Go and runc dependencies\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>4. Docker Compose v5.3.0\u003C\u002Fh2>\u003Cp>Docker Compose v5.3.0 adds native init container support, which helps when setup tasks must run before main services start. If your stack needs database migrations, config prep, or other ordered startup work, this is the release that expands what Compose can express directly.\u003C\u002Fp>\u003Cp>Alongside that feature, the release includes bug fixes and internal migrations. The main takeaway is simple: Compose is moving closer to handling more lifecycle steps without extra scripts or wrapper tooling.\u003C\u002Fp>\u003Cul>\u003Cli>Native init containers\u003C\u002Fli>\u003Cli>Better startup ordering\u003C\u002Fli>\u003Cli>Useful for setup-first workflows\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>5. Docker 29.6.0 and Moby API v1.55.0\u003C\u002Fh2>\u003Cp>Docker 29.6.0 and \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmoby\u002Fmoby\" target=\"_blank\" rel=\"noopener noreferrer\">Moby\u003C\u002Fa> API v1.55.0 add features that matter to platform teams and security tooling. The API now exposes image attestation retrieval, so tools can pull in-toto provenance and SPDX SBOM data directly from the daemon.\u003C\u002Fp>\u003Cp>That same release line also adds a container resource update endpoint and improves image pruning, push behavior, and rootless networking. If you maintain internal build systems or policy checks, these changes make metadata access and resource control easier to automate.\u003C\u002Fp>\u003Cul>\u003Cli>New attestation endpoint for images\u003C\u002Fli>\u003Cli>Container resource update API\u003C\u002Fli>\u003Cli>Better support for SBOM and provenance data\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>What to pick\u003C\u002Fh2>\u003Cp>If you need immediate operational relief, start with Docker Engine 29.7.2 and 29.7.0, since they target bugs and a security issue that can affect many users. If your work centers on Compose workflows, v5.4.0 is the most interesting change for resource handling, while v5.3.0 is the pick for teams that want init containers without extra glue.\u003C\u002Fp>\u003Cp>For platform and security teams, Docker 29.6.0 and Moby API v1.55.0 are the releases that expand automation around attestations and resource updates. In short: choose the patch releases for stability, the Compose releases for orchestration behavior, and the API updates when metadata and policy checks are part of your pipeline.\u003C\u002Fp>","13 Docker releases show security fixes, Compose changes, and API updates that ops teams need to read first.","releasebytes.com","https:\u002F\u002Freleasebytes.com\u002Fdocker",null,"https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786557770638-01iq.png","industry","en","d8c7a2ca-123e-49bf-a1c2-df856e63fce8",[17,18,19,20,21,22,23,24,25,26],"Docker","Docker Engine","Docker Compose","Moby","containerd","CVE-2026-17106","release notes","security fixes","init containers","image attestations",[28,29,30],"Docker 29.7.0 is the key security release, with embedded containerd and CVE-2026-17106 fixed.","Docker Compose v5.4.0 changes resource reconciliation, while v5.3.0 adds init containers.","Docker 29.6.0 and Moby API v1.55.0 expand attestation and resource-update support.",1,"2026-08-12T18:02:27.492805+00:00","2026-08-12T18:02:27.479+00:00",{"tags":35,"relatedLang":38,"relatedPosts":42},[36],{"name":17,"slug":37},"docker",{"id":15,"slug":39,"title":40,"language":41},"dockers-latest-releases-security-compose-zh","Docker 這 5 版先看安全與 Compose","zh",[43,49,55,61,67,73],{"id":44,"slug":45,"title":46,"cover_image":47,"image_url":47,"created_at":48,"category":13},"004596a9-1596-4845-99ee-ba713e42aa9d","moka-ai-hrms-choice-growing-teams-en","Moka AI Is a Stronger HRMS Choice for Growing Teams","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786611783121-ji6j.png","2026-08-13T09:02:28.700702+00:00",{"id":50,"slug":51,"title":52,"cover_image":53,"image_url":53,"created_at":54,"category":13},"c71ed61a-317a-440b-8ebd-6b8092334a4b","august-2026-market-review-ai-stocks-flipped-fast-en","August 2026 Market Review: AI Stocks Flipped Fast","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786584782010-3fqk.png","2026-08-13T01:32:37.446894+00:00",{"id":56,"slug":57,"title":58,"cover_image":59,"image_url":59,"created_at":60,"category":13},"512e86eb-fbce-4ce8-8b37-6bbe9d51ddd5","pixel-11-launch-live-google-reveals-en","Pixel 11 launch live: every Google reveal","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786581161788-lwbv.png","2026-08-13T00:32:20.660314+00:00",{"id":62,"slug":63,"title":64,"cover_image":65,"image_url":65,"created_at":66,"category":13},"e118a315-279d-496d-9efc-2b4e896b9feb","anthropic-invisible-watermark-right-move-en","Anthropic’s invisible watermark is the right move","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786579366798-6w22.png","2026-08-13T00:02:25.597044+00:00",{"id":68,"slug":69,"title":70,"cover_image":71,"image_url":71,"created_at":72,"category":13},"1e9419ed-2289-4485-a11a-8d6240adce7f","bitcoins-busy-week-security-wake-up-call-en","Bitcoin’s busy week was a security wake-up call","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786519989025-qs8f.png","2026-08-12T07:32:37.643814+00:00",{"id":74,"slug":75,"title":76,"cover_image":77,"image_url":77,"created_at":78,"category":13},"b9a26d79-5b1d-48bb-912f-f2ac97b1297c","fpt-openai-select-status-channel-play-not-moat-en","FPT’s OpenAI Select status is a channel play, not a moat","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1786494760294-fdb4.png","2026-08-12T00:32:19.658103+00:00",[80,85,90,95,100,105,110,115,120,125],{"id":81,"slug":82,"title":83,"created_at":84},"d35a1bd9-e709-412e-a2df-392df1dc572a","ai-impact-2026-developments-market-en","AI's Impact in 2026: Key Developments and Market Shifts","2026-03-25T16:20:33.205823+00:00",{"id":86,"slug":87,"title":88,"created_at":89},"5ed27921-5fd6-492e-8c59-78393bf37710","trumps-ai-legislative-framework-en","Trump's AI Legislative Framework: What's Inside?","2026-03-25T16:22:20.005325+00:00",{"id":91,"slug":92,"title":93,"created_at":94},"e454a642-f03c-4794-b185-5f651aebbaca","nvidia-gtc-2026-key-highlights-innovations-en","NVIDIA GTC 2026: Key Highlights and Innovations","2026-03-25T16:22:47.882615+00:00",{"id":96,"slug":97,"title":98,"created_at":99},"0ebb5b16-774a-4922-945d-5f2ce1df5a6d","claude-usage-diversifies-learning-curves-en","Claude Usage Diversifies, Learning Curves Emerge","2026-03-25T16:25:50.770376+00:00",{"id":101,"slug":102,"title":103,"created_at":104},"69934e86-2fc5-4280-8223-7b917a48ace8","openclaw-ai-commoditization-concerns-en","OpenClaw's Rise Raises Concerns of AI Model Commoditization","2026-03-25T16:26:30.582047+00:00",{"id":106,"slug":107,"title":108,"created_at":109},"b4b2575b-2ac8-46b2-b90e-ab1d7c060797","google-gemini-ai-rollout-2026-en","Google's Gemini AI Rollout Extended to 2026","2026-03-25T16:28:14.808842+00:00",{"id":111,"slug":112,"title":113,"created_at":114},"6e18bc65-42ae-4ad0-b564-67d7f66b979e","meta-llama4-fabricated-results-scandal-en","Meta's Llama 4 Scandal: Fabricated AI Test Results Unveiled","2026-03-25T16:29:15.482836+00:00",{"id":116,"slug":117,"title":118,"created_at":119},"bf888e9d-08be-4f47-996c-7b24b5ab3500","accenture-mistral-ai-deployment-en","Accenture and Mistral AI Team Up for AI Deployment","2026-03-25T16:31:01.894655+00:00",{"id":121,"slug":122,"title":123,"created_at":124},"5382b536-fad2-49c6-ac85-9eb2bae49f35","mistral-ai-high-stakes-2026-en","Mistral AI: Facing High Stakes in 2026","2026-03-25T16:31:39.941974+00:00",{"id":126,"slug":127,"title":128,"created_at":129},"9da3d2d6-b669-4971-ba1d-17fdb3548ed5","cursors-meteoric-rise-pressures-en","Cursor's Meteoric Rise Faces Industry Pressures","2026-03-25T16:32:21.899217+00:00"]