https://socket.dev/
all exploits we've analyzed from npm and cargo (granted, github sourced ones) had code to break free from docker. and some even from virtualbox vms if run with the vscode helpers.
https://socket.dev/