Launch Week Day 1: Announcing Security Design Review
go

github.com/lxc/incus/v6

View on go registry
19 Total advisories
19 Vulnerabilities
0 Malware

Vulnerabilities

CRITICAL 9.9
Go

CVE-2026-33897

Incus vulnerable to arbitrary file read and write through pongo templates

UNKNOWN
Go

CVE-2026-33711

Incus vulnerable to local privilege escalation through VM screenshot path

MEDIUM 6.5
Go

CVE-2026-33743

Incus vulnerable to denial of source through crafted bucket backup file

CRITICAL 9.9
Go

CVE-2026-33945

Incus has an abitrary file write through its systemd-creds options

UNKNOWN
Go

CVE-2026-33945

Incus has an abitrary file write through its systemd-creds options in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-33897

Incus vulnerable to arbitrary file read and write through pongo templates in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-33711

Incus vulnerable to local privilege escalation through VM screenshot path in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-33898

Local Incus UI web server vulnerable to nuthentication bypass in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-33743

Incus vulnerable to denial of source through crafted bucket backup file in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-33542

Incus does not verify combined fingerprint when downloading images from simplestreams servers in github.com/lxc/incus

UNKNOWN
Go

CVE-2025-64507

Incus vulnerable to local privilege escalation through custom storage volumes

HIGH 8.1
Go

CVE-2025-52890

Incus creates nftables rules that partially bypass security options

LOW 3.4
Go

CVE-2025-52889

Incus Allocation of Resources Without Limits allows firewall rule bypass on managed bridge networks

HIGH 8.7
Go

CVE-2026-23953

Incus container environment configuration newline injection

UNKNOWN
Go

CVE-2025-64507

Incus vulnerable to local privilege escalation through custom storage volumes in github.com/lxc/incus

UNKNOWN
Go

CVE-2025-52889

Incus Allocation of Resources Without Limits allows firewall rule bypass on managed bridge networks in github.com/lxc/incus

UNKNOWN
Go

CVE-2025-52890

Incus creates nftables rules that partially bypass security options in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-23954

Incus container image templating arbitrary host file read and write in github.com/lxc/incus

UNKNOWN
Go

CVE-2026-23953

Incus container environment configuration newline injection in github.com/lxc/incus

Ready to move

Start Securing

Free, no credit card | First findings in minutes