| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-41326 | Kata Containers: CopyFile Policy Subversion via Symlinks | kata-containers | kata-containers | - | - | 2026-04-24 18:46:22 | Deep Dive |
| CVE-2026-33414 | PowerShell Command Injection in Podman HyperV Machine | containers | podman | 高危 | - | 2026-04-14 22:42:20 | Deep Dive |
| CVE-2026-35406 | Aardvark-dns has incorrect error handling for malformed tcp packets | containers | aardvark-dns | Medium | 6.2 | 2026-04-07 21:32:24 | Deep Dive |
| CVE-2026-30892 | Crun incorrectly parses `crun exec` option `-u`, leading to privilege escalation | containers | crun | None | 0.0 | 2026-03-25 23:57:02 | Deep Dive |
| CVE-2025-36105 | IBM Planning Analytics Advanced Certified Containers is vulnerable to a sensitive information disclosure vulnerability | IBM | Planning Analytics Advanced Certified Containers | Medium | 4.4 | 2026-03-10 00:50:06 | Deep Dive |
| CVE-2026-26122 | Microsoft ACI Confidential Containers Information Disclosure Vulnerability | Microsoft | Microsoft ACI Confidential Containers | Medium | 6.5 | 2026-03-05 22:18:22 | Deep Dive |
| CVE-2026-26124 | Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability | Microsoft | Microsoft ACI Confidential Containers | Medium | 6.7 | 2026-03-05 22:18:21 | Deep Dive |
| CVE-2026-23651 | Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability | Microsoft | Microsoft ACI Confidential Containers | Medium | 6.7 | 2026-03-05 22:18:19 | Deep Dive |
| CVE-2025-13490 | IBM App Connect Enterprise Certified Container IntegrationServer and IntegrationRuntime operands that report metrics are vulnerable to loss of confidentiality | IBM | App Connect Operator | Medium | 5.9 | 2026-03-03 19:58:18 | Deep Dive |
| CVE-2026-24834 | Kata Container to Guest micro VM privilege escalation | kata-containers | kata-containers | Critical | 9.3 | 2026-02-19 15:57:51 | Deep Dive |
| CVE-2026-21522 | Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability | Microsoft | Microsoft ACI Confidential Containers | Medium | 6.7 | 2026-02-10 17:51:30 | Deep Dive |
| CVE-2026-23655 | Microsoft ACI Confidential Containers Information Disclosure Vulnerability | Microsoft | Microsoft ACI Confidential Containers | Medium | 6.5 | 2026-02-10 17:51:24 | Deep Dive |
| CVE-2025-13096 | XML eXternal Entity injection (XXE) vulnerability affect IBM Business Automation Workflow - | IBM | Business Automation Workflow containers | High | 7.1 | 2026-02-02 20:56:48 | Deep Dive |
| CVE-2026-24054 | Kata Containers Runtime: Host block device can be hotplugged to the VM if the container image is malformed or contains no layers | kata-containers | kata-containers | 高危 | - | 2026-01-29 17:16:56 | Deep Dive |
| CVE-2025-36058 | Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025 | IBM | Business Automation Workflow containers | Medium | 5.5 | 2026-01-20 15:09:07 | Deep Dive |
| CVE-2025-36059 | Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025 | IBM | Business Automation Workflow containers | Medium | 4.7 | 2026-01-20 15:07:46 | Deep Dive |
| CVE-2025-64655 | Dynamics OmniChannel SDK Storage Containers Elevation of Privilege Vulnerability | Microsoft | Dynamics OmniChannel SDK Storage Containers | High | 8.8 | 2025-11-20 22:18:36 | Deep Dive |
| CVE-2025-33150 | IBM Cognos Analytics Certified Containers information disclosure | IBM | Cognos Analytics Certified Containers | Medium | 5.3 | 2025-11-10 19:33:55 | Deep Dive |
| CVE-2025-36054 | Cross-site scripting vulnerability affect IBM Business Automation Workflow Process Federation Server - | IBM | Business Automation Workflow containers | Medium | 6.1 | 2025-11-06 14:11:49 | Deep Dive |
| CVE-2025-64139 | Jenkins Start Windocks Containers Plugin 安全漏洞 | Jenkins Project | Jenkins Start Windocks Containers Plugin | - | - | 2025-10-29 13:29:45 | Deep Dive |