Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

incus — Vulnerabilities & Security Advisories 38

All 38 CVE vulnerabilities found in incus, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities associated with Incus, a container runtime. It collects documented security issues affecting this specific product across all known weakness types. The data covers the full historical range of published advisories for Incus, from its initial release through the most recent updates. Readers can use this aggregation to track vendor-issued security advisories, analyze the distribution of weakness classes, and review the complete vulnerability history for the product. The content is intended for security teams and developers who need a consolidated view of risk exposure related to Incus deployments. No individual CVE identifiers are listed in this introductory text; the page serves as an entry point to detailed records.

Vendor: lxc

CVE ID Title CVSS Severity Published
CVE-2026-63343 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root CWE-73 9.9 Critical 2026-08-21
CVE-2026-63125 Incus vulnerable to root RCE via image backup.yaml symlink CWE-59 9.9 Critical 2026-08-21
CVE-2026-62941 Incus: Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge CWE-863 9.9 Critical 2026-08-21
CVE-2026-62940 Incus has a project restriction bypass via instance migration config override CWE-862 9.9 Critical 2026-08-21
CVE-2026-62867 Incus has an argument injection in storage volume block.create_options that leads to arbitrary command execution CWE-88 9.9 Critical 2026-08-21
CVE-2026-62313 Incus: Project restriction `restricted.containers.privilege=isolated` bypassable by omitting `security.idmap.isolated` CWE-863 4.3 Medium 2026-08-21
CVE-2026-55622 Incus has a project restriction bypass in instance copy across projects CWE-284 7.7 High 2026-08-21
CVE-2026-55621 Incus has a project restriction bypass for custom volume copy across projects CWE-284 7.7 High 2026-08-21
CVE-2026-48769 Incus has an arbitrary file write on its client due to trusted image hash CWE-20 9.9 Critical 2026-08-21
CVE-2026-48755 Incus has an argument injection in backup compression algorithm leading to AFW and ACE CWE-20 9.9 Critical 2026-08-21
CVE-2026-48754 Incus: Nil-pointer dereference in createDependentVolumesFromBackup on disk.{Volume,VolumeSnapshots,Pool} CWE-476 2.1 Low 2026-08-21
CVE-2026-48753 Incus has an arbitrary file write via path traversal in S3 multipart upload CWE-73 9.9 Critical 2026-08-21
CVE-2026-48752 Incus has arbitrary file read+write on host via templates/ symlink in malicious image CWE-73 9.9 Critical 2026-08-21
CVE-2026-48751 Incus has a restricted project bypass leading to arbitrary command execution CWE-862 9.9 Critical 2026-08-21
CVE-2026-48750 Incus has an arbitrary file write on host via `exec-output` symlink in crafted image CWE-73 9.9 Critical 2026-08-21
CVE-2026-48749 Incus has an arbitrary file read+write on host via rootfs/ symlink in malicious image CWE-73 9.9 Critical 2026-08-21
CVE-2026-47753 Incus has a Nil-Pointer Dereference Panic via Instance Backup Import (volume omitted) CWE-476 4.4 Medium 2026-08-21
CVE-2026-48756 Incus: CreateCustomVolumeFromBackup nil-pointer dereference on volume_snapshots[*].expires_at (sibling-field variant of GHSA-r7w7) CWE-476 2.1 Low 2026-08-21
CVE-2026-41685 Incus: Unbounded binary import disk exhaustion CWE-770 4.3 Medium 2026-05-07
CVE-2026-41684 Incus: Nil Dereferences on Restore via Malformed YAML CWE-476 6.5 Medium 2026-05-07
CVE-2026-41648 Incus: Unbounded YAML Metadata Decode via Parsing CWE-770 6.5AI Medium AI 2026-05-07
CVE-2026-41647 Incus: Nil-Pointer Dereference via S3 Bucket Import CWE-476 6.5 Medium 2026-05-07
CVE-2026-40251 Incus out-of-bounds panic in snapshot metadata handling allows denial of service CWE-129 6.5AI Medium AI 2026-05-06
CVE-2026-40243 Incus OVN TLS verification accepts peer-supplied roots and permits endpoint impersonation CWE-295 9.1AI Critical AI 2026-05-06
CVE-2026-40197 Incus nil-pointer dereference in custom volume import allows denial of service CWE-476 6.5AI Medium AI 2026-05-06
CVE-2026-40195 Incus nil-pointer dereference in storage bucket import allows denial of service CWE-476 6.5AI Medium AI 2026-05-06
CVE-2026-35527 Incus blind SSRF via image import preflight HEAD request CWE-918 - - 2026-05-05
CVE-2026-33945 Abitrary file write through systemd-creds option CWE-22 10.0 Critical 2026-03-26
CVE-2026-33898 Local Incus UI web server vulnerable to nuthentication bypass CWE-287 8.8 High 2026-03-26
CVE-2026-33897 Incus vulnerable to arbitrary file read and write through pongo templates CWE-1336 10.0 Critical 2026-03-26

All 38 known CVE vulnerabilities affecting incus with full Chinese analysis, references, and POCs where available.