- Three-mode safety system (Strict, Balanced, Autonomous) to the Gordon AI agent's tool confirmation UI with risk-tier labels on confirmation
- AF_UNIX sockets shared over VirtioFS now work in both directions (host to guest and guest to host)
- Docker Engine updated to v29.7.2
- Docker Buildx updated to v0.36.0
- Docker Scout CLI updated to v1.24.0
- Docker Agent updated to v1.119.0
- Docker VMM Beta performance improvements by Docker's own container-optimized hypervisor available for Mac and Windows
- Gordon now displays specific error messages for tool failures, policy-blocked actions, and loop detection instead of a generic Agent error
- Updated the bundled 7-Zip to 26.02 to avoid antivirus software quarantining it during an upgrade on Windows
- Container stop timeouts and unless-stopped restart policies not being honored during engine shutdown
- Enabling Docker Offload from the Docker Desktop Dashboard failed when the proxy was configured by the operating system instead of by environment variables
- Crash on startup after upgrading for users whose settings file was written by a very old version
- Port forwarding for Swarm services that use automatically assigned published ports, including host-mode task ports and repeated ingress port definitions
- Flash of incorrect UI content on app launch, such as a brief 'Waiting for the Docker Engine...' screen or unexpected navigation away from gated pages
- Restarting the VM would steal the window focus
- Kubernetes (kind) cluster with Enhanced Container Isolation could fail to recover after a Docker Desktop restart
- nftables fib expressions failing with 'Operation not supported' in inet tables on Apple Silicon
- Windows installer reported success when it could not write its settings or enterprise policy files
- Model Runner failing to start with CreateJobObject: Access is denied when Docker Desktop is launched via a Secondary Logon (run-as-user) session
- Docker Desktop failing to start on Linux arm64 hosts due to incorrect QEMU binary path resolution
- Addressed CVE-2026-17106, a destination-escape flaw in docker container cp
Docker Engine v29.7.2 Docker Buildx v0.36.0 Docker Scout CLI v1.24.0 Docker Agent v1.119.0 Docker VMM Beta performance improvements by Docker's own container-optimized hypervisor. Available for Mac and Windows. Gordon now displays specific error messages for tool failures, policy-blocked actions, and loop detection instead of a generic Agent error. Fixed container stop timeouts and unless-stopped restart policies not being honored during engine shutdown. Fixed a bug where enabling Docker Offload from the Docker Desktop Dashboard failed when the proxy was configured by the operating system instead of by environment variables. Fixed a crash on startup after upgrading, for users whose settings file was written by a very old version. Fixed port forwarding for Swarm services that use automatically assigned published ports, including host-mode task ports and repeated ingress port definitions. Added a three-mode safety system (Strict, Balanced, Autonomous) to the Gordon AI agent's tool confirmation UI, replacing the previous binary approve/allow-all dialog, with risk-tier labels on confirmation. Fixed a flash of incorrect UI content on app launch, such as a brief 'Waiting for the Docker Engine...' screen or unexpected navigation away from gated pages. AF_UNIX sockets shared over VirtioFS now work in both directions (host to guest and guest to host). Fixed a bug where restarting the VM would steal the window focus. Fixed a bug where a Kubernetes (kind) cluster with Enhanced Container Isolation could fail to recover after a Docker Desktop restart. Fixed nftables fib expressions failing with "Operation not supported" in inet tables on Apple Silicon. Fixed an issue where the Windows installer reported success when it could not write its settings or enterprise policy files. Fixed Model Runner failing to start with CreateJobObject: Access is denied when Docker Desktop is launched via a Secondary Logon (run-as-user) session. Updated the bundled 7-Zip to 26.02 to avoid antivirus software quarantining it during an upgrade on Windows. Fixed Docker Desktop failing to start on Linux arm64 hosts due to incorrect QEMU binary path resolution. Addressed CVE-2026-17106, a destination-escape flaw in docker container cp.