Package impact
Go / github.com/containerd/containerd/v2
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-46680 | high | — | 8.0 | 7d ago | containerd user ID handling bypass allows runAsNonRoot evasion | |
| CVE-2025-64329 | unknown | — | — | 7mo ago | containerd CRI server: Host memory exhaustion through Attach goroutine leak in github.com/containerd/containerd | |
| CVE-2024-25621 | unknown | — | — | 7mo ago | containerd affected by a local privilege escalation via wide permissions on CRI directory in github.com/containerd/containerd | |
| CVE-2025-47291 | unknown | — | — | 1y ago | Incorrect cgroup assignment for containers running in usernamespaced Kubernetes pods in github.com/containerd/containerd | |
| CVE-2025-47290 | unknown | — | — | 1y ago | Allows host filesystem access on pull in github.com/containerd/containerd | |
| CVE-2024-40635 | unknown | — | — | 1y ago | containerd has an integer overflow in User ID handling in github.com/containerd/containerd |