| Bug | Description |
|---|
| TEMP-0000000-FEDD3E | GHSA-p2v3-6wvc-cv3p: Arbitrary file write on host via image fingerprint path traversal |
| TEMP-0000000-F8C5DB | GHSA-26gp-p5fw-3r2h: Arbitrary file write on host via path traversal in instance backup import |
| TEMP-0000000-A1BB32 | GHSA-67qw-68v3-36h6: Arbitrary file write on host via path traversal in custom volume import |
| TEMP-0000000-8824C6 | GHSA-m3j6-p3v3-qmjv: Container configuration newline injection through nvidia.driver.capabilities |
| TEMP-0000000-39F52E | GHSA-7fj9-65v4-rp7h: Arbitrary file write on host via image-planted symlinks and oci.dns.* newline injection |
| TEMP-0000000-8E8B50 | GHSA-6v6x-387m-rj4w: Project restriction bypass on network address sets |
| TEMP-0000000-7FB930 | GHSA-4qxq-p5hm-3q3p: Arbitrary host file read+write via VM template path traversal |
| CVE-2026-63343 | Arbitrary file read+write on host via metadata.yaml symlink in crafted image |
| CVE-2026-63125 | Arbitrary file write on host via backup.yaml symlink in crafted image |
| CVE-2026-62941 | Project restriction bypass via cross-project instance copy |
| CVE-2026-62940 | Project restriction bypass via instance migration config override |
| CVE-2026-62867 | Argument injection through storage volume block.create_options |
| CVE-2026-62313 | Project isolation restriction bypass by omitting security.idmap.isolated |
| CVE-2026-55622 | |
| CVE-2026-55621 | |
| CVE-2026-48769 | |
| CVE-2026-48756 | |
| CVE-2026-48755 | |
| CVE-2026-48754 | |
| CVE-2026-48753 | |
| CVE-2026-48752 | |
| CVE-2026-48751 | |
| CVE-2026-48750 | |
| CVE-2026-48749 | |
| CVE-2026-47753 | |
| CVE-2026-41685 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-41684 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-41648 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-41647 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-40251 | Incus is a system container and virtual machine manager. In versions b ... |
| CVE-2026-40243 | Incus is a system container and virtual machine manager. In versions b ... |
| CVE-2026-40197 | Incus is a system container and virtual machine manager. In versions b ... |
| CVE-2026-40195 | Incus is a system container and virtual machine manager. In versions b ... |
| CVE-2026-35527 | Incus is an open source container and virtual machine manager. In vers ... |
| CVE-2026-34179 | In Canonical LXD versions 4.12 through 6.7, the doCertificateUpdate fu ... |
| CVE-2026-34178 | In Canonical LXD before 6.8, the backup import path validates project ... |
| CVE-2026-34177 | Canonical LXD versions 4.12 through 6.7 contain an incomplete denylist ... |
| CVE-2026-33945 | Incus is a system container and virtual machine manager. Incus instanc ... |
| CVE-2026-33897 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-33743 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-33542 | Incus is a system container and virtual machine manager. Prior to vers ... |
| CVE-2026-28384 | An improper sanitization of the compression_algorithm parameter in Can ... |
| CVE-2026-23954 | Incus is a system container and virtual machine manager. Versions 6.21 ... |
| CVE-2026-23953 | Incus is a system container and virtual machine manager. In versions 6 ... |
| CVE-2026-3351 | Improper authorization in the API endpoint GET /1.0/certificates in Ca ... |
| CVE-2025-64507 | Incus is a system container and virtual machine manager. An issue in v ... |
| CVE-2025-54293 | Path Traversal in the log file retrieval function in Canonical LXD 5.0 ... |
| CVE-2025-54291 | Information disclosure in images API in Canonical LXD before 6.5 and 5 ... |
| CVE-2025-54290 | Information disclosure in image export API in Canonical LXD before 6.5 ... |
| CVE-2025-54289 | Privilege Escalation in operations API in Canonical LXD <6.5 on multip ... |
| CVE-2025-54288 | Information Spoofing in devLXD Server in Canonical LXD versions 4.0 an ... |
| CVE-2025-54287 | Template Injection in instance snapshot creation component in Canonica ... |
| CVE-2025-54286 | Cross-Site Request Forgery (CSRF) in LXD-UI in Canonical LXD versions ... |
| CVE-2025-52890 | Incus is a system container and virtual machine manager. When using an ... |
| CVE-2025-52889 | Incus is a system container and virtual machine manager. When using an ... |
| CVE-2024-6219 | Mark Laing discovered in LXD's PKI mode, until version 5.21.1, that a ... |
| CVE-2024-6156 | Mark Laing discovered that LXD's PKI mode, until version 5.21.2, could ... |
| CVE-2023-49721 | An insecure default to allow UEFI Shell in EDK2 was left enabled in LX ... |