Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Canonical — Vulnerabilities & Security Advisories 145

Browse all 145 CVE security advisories affecting Canonical. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Canonical Ltd. primarily develops and maintains Ubuntu, a widely deployed Linux distribution, alongside the OpenStack cloud infrastructure platform and the Snap package management system. Security audits reveal a significant volume of recorded vulnerabilities, currently totaling 107 CVEs, reflecting the extensive codebase and third-party dependencies inherent in these large-scale software ecosystems. Historically, the most prevalent vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from improper input validation or insecure default configurations within associated services. While no single catastrophic incident has defined the company’s security history, the sheer number of disclosed issues highlights the challenges of maintaining rigorous patch cycles across diverse components. These findings underscore the necessity for continuous monitoring and timely updates for organizations relying on Canonical’s open-source technologies to mitigate potential exploitation risks.

Found 29 results / 145 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-66897 Instance template path traversal allows arbitrary host file write as root — LXD CWE-22 9.9 Critical 2026-08-24
CVE-2026-16033 Arbitrary file read+write on host via templates/ symlink in malicious image — LXD CWE-22 8.5 High 2026-08-12
CVE-2026-66898 Path traversal via unvalidated instance name in backup tarball restore enables root file write / RCE — LXD CWE-22 9.9 Critical 2026-08-12
CVE-2026-63293 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root — LXD CWE-59 9.9 Critical 2026-08-12
CVE-2026-63294 Root RCE via image backup.yaml symlink — LXD CWE-59 9.9 Critical 2026-08-12
CVE-2026-63295 Project restriction `restricted.containers.privilege=isolated` bypassable by omitting `security.idmap.isolated` — LXD CWE-863 4.3 Medium 2026-08-12
CVE-2026-63296 Project restriction bypass via instance migration config override — LXD CWE-863 9.9 Critical 2026-08-12
CVE-2026-63297 Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge — LXD CWE-367 9.9 Critical 2026-08-12
CVE-2026-63298 LXD arbitrary lxc.conf directive injection via NVIDIA instance configuration — LXD CWE-78 8.7 Critical 2026-08-12
CVE-2026-63299 Storage volume cross-project move and snapshot restore bypass project disk limits — LXD CWE-770 8.5 Critical 2026-08-12
CVE-2026-62420 Cross-project cluster migration bypasses project restrictions via cluster notification flag — LXD CWE-863 9.9 Critical 2026-08-12
CVE-2026-63300 Cross-project instance move bypasses all project restrictions allowing host command execution — LXD CWE-862 9.9 Critical 2026-08-12
CVE-2026-28385 SSRF via image import from URL allows internal network probing by authenticated users — lxd CWE-918 5.0 Medium 2026-06-26
CVE-2026-9640 LXD Snapshot Import Privilege Escalation Vulnerability — LXD CWE-863 7.2 High 2026-06-26
CVE-2026-9639 Authenticated Denial of Service via Malicious Backup Tarball in LXD — LXD CWE-476 6.5 Medium 2026-06-26
CVE-2026-12411 Broken Access Control in Canonical LXD DevLXD API — lxd CWE-639 8.4 High 2026-06-26
CVE-2026-34179 Update of type field in restricted TLS certificate allows privilege escalation to cluster admin — lxd CWE-915 9.1 Critical 2026-04-09
CVE-2026-34178 Importing a crafted backup leads to project restriction bypass — lxd CWE-20 9.1 Critical 2026-04-09
CVE-2026-34177 VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf — lxd CWE-184 9.1 Critical 2026-04-09
CVE-2026-28384 Authenticated RCE via unsanitized compression_algorithm — lxd CWE-78 8.8AI High AI 2026-03-12
CVE-2026-3351 Authorization Bypass in LXD GET /1.0/certificates Endpoint — lxd CWE-862 4.3AI Medium AI 2026-03-03
CVE-2025-54293 Path Traversal in LXD Instance Log File Retrieval — LXD CWE-22 6.5AI Medium AI 2025-10-02
CVE-2025-54292 Client-Side Path Traversal in LXD-UI — LXD CWE-22 8.1AI High AI 2025-10-02
CVE-2025-54291 Project existence disclosure in LXD images API — LXD CWE-209 5.3AI Medium AI 2025-10-02
CVE-2025-54290 Project Existence Disclosure via Error Handling in LXD Image Export — LXD CWE-200 5.3AI Medium AI 2025-10-02
CVE-2025-54289 Privilege Escalation via WebSocket Connection Hijacking in LXD Operations API — LXD CWE-1385 8.8AI High AI 2025-10-02
CVE-2025-54288 Source Container Identification Vulnerability via cmdline Spoofing in devLXD Server — LXD CWE-290 5.1AI Medium AI 2025-10-02
CVE-2025-54287 Arbitrary File Read via Template Injection in Snapshot Patterns — LXD CWE-1336 6.5AI Medium AI 2025-10-02
CVE-2025-54286 CSRF Vulnerability When Using Client Certificate Authentication with the LXD-UI — LXD CWE-352 8.8AI High AI 2025-10-02

This page lists every published CVE security advisory associated with Canonical. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.