A critical (CVSS 10.0) Go crypto/tls vulnerability affects most Docker Engine versions and will trigger compliance alerts regardless of actual risk.