Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

LXD — Vulnerabilities & Security Advisories 40

All 40 CVE vulnerabilities found in LXD, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities for LXD, a container management system developed by Canonical. It collects disclosed flaws in the LXD product and its related Linux containers, covering historical advisories from 2016 through the present. Readers can use this view to track the vendor's advisory history, analyze common weakness types affecting LXD, and review the overall vulnerability timeline for this specific container runtime. The dataset includes critical, high, and medium severity issues, organized to facilitate rapid assessment of risk exposure and patching priority.

Vendor: Ubuntu

CVE ID Title CVSS Severity Published
CVE-2026-87798 LXD client recursive file pull allows directory escape via malicious VM agent CWE-59 5.8 Medium 2026-09-28
CVE-2026-87799 Arbitrary file write on LXD host via symlink in migration stream CWE-59 9.9 Critical 2026-09-28
CVE-2026-97335 Incorrect authorization in LXD storage volume API allows reading volumes from other projects CWE-863 7.7 High 2026-09-28
CVE-2026-85185 Path traversal in LXD btrfs storage driver allows arbitrary file deletion and write on host as root CWE-22 9.6 Critical 2026-09-28
CVE-2026-85526 Path traversal via Btrfs optimized-backup subvolumes[].path enables root file/dir manipulation in LXD CWE-22 9.9 Critical 2026-09-28
CVE-2026-86335 LXD Cross-Project Private Image Theft via Unsanitized GetImageFromAnyProject Local Reuse CWE-862 6.3 Medium 2026-09-28
CVE-2026-86334 CLI Path Traversal via Content-Disposition in LXD Image Export/Copy CWE-22 4.2 Medium 2026-09-28
CVE-2026-66897 Instance template path traversal allows arbitrary host file write as root CWE-22 9.9 Critical 2026-08-24
CVE-2026-16033 Arbitrary file read+write on host via templates/ symlink in malicious image CWE-22 8.5 High 2026-08-12
CVE-2026-66898 Path traversal via unvalidated instance name in backup tarball restore enables root file write / RCE CWE-22 9.9 Critical 2026-08-12
CVE-2026-63293 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root CWE-59 9.9 Critical 2026-08-12
CVE-2026-63294 Root RCE via image backup.yaml symlink CWE-59 9.9 Critical 2026-08-12
CVE-2026-63295 Project restriction `restricted.containers.privilege=isolated` bypassable by omitting `security.idmap.isolated` CWE-863 4.3 Medium 2026-08-12
CVE-2026-63296 Project restriction bypass via instance migration config override CWE-863 9.9 Critical 2026-08-12
CVE-2026-63297 Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge CWE-367 9.9 Critical 2026-08-12
CVE-2026-63298 LXD arbitrary lxc.conf directive injection via NVIDIA instance configuration CWE-78 8.7 Critical 2026-08-12
CVE-2026-63299 Storage volume cross-project move and snapshot restore bypass project disk limits CWE-770 8.5 Critical 2026-08-12
CVE-2026-62420 Cross-project cluster migration bypasses project restrictions via cluster notification flag CWE-863 9.9 Critical 2026-08-12
CVE-2026-63300 Cross-project instance move bypasses all project restrictions allowing host command execution CWE-862 9.9 Critical 2026-08-12
CVE-2026-28385 SSRF via image import from URL allows internal network probing by authenticated users CWE-918 5.0 Medium 2026-06-26
CVE-2026-9640 LXD Snapshot Import Privilege Escalation Vulnerability CWE-863 7.2 High 2026-06-26
CVE-2026-9639 Authenticated Denial of Service via Malicious Backup Tarball in LXD CWE-476 6.5 Medium 2026-06-26
CVE-2026-12411 Broken Access Control in Canonical LXD DevLXD API CWE-639 8.4 High 2026-06-26
CVE-2026-34179 Update of type field in restricted TLS certificate allows privilege escalation to cluster admin CWE-915 9.1 Critical 2026-04-09
CVE-2026-34178 Importing a crafted backup leads to project restriction bypass CWE-20 9.1 Critical 2026-04-09
CVE-2026-34177 VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf CWE-184 9.1 Critical 2026-04-09
CVE-2026-28384 Authenticated RCE via unsanitized compression_algorithm CWE-78 8.8AI High AI 2026-03-12
CVE-2026-3351 Authorization Bypass in LXD GET /1.0/certificates Endpoint CWE-862 4.3AI Medium AI 2026-03-03
CVE-2025-54293 Path Traversal in LXD Instance Log File Retrieval CWE-22 6.5AI Medium AI 2025-10-02
CVE-2025-54292 Client-Side Path Traversal in LXD-UI CWE-22 8.1AI High AI 2025-10-02

All 40 known CVE vulnerabilities affecting LXD with full Chinese analysis, references, and POCs where available.