Package impact

golang Go / github.com/lxc/incus/v6/cmd/incusd

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2026-41684 medium 6.5 6.5 21d ago Incus has Nil Dereferences on Restore via Malformed YAML debiangolang
CVE-2026-41647 medium 6.5 6.5 21d ago Incus has Nil-Pointer Dereference via S3 Bucket Import debiangolang
CVE-2026-40251 medium 6.5 6.5 22d ago Incus Vulnerable to Panic via Snapshot Bounds Check debiangolang
CVE-2026-40197 medium 6.5 6.5 22d ago Incus has a Nil-Pointer Dereference via Custom Volume Import debiangolang
CVE-2026-40195 medium 6.5 6.5 22d ago Incus has a Nil-Pointer Dereference Panic via Bucket Metadata debiangolang
CVE-2026-41648 medium 5.0 5.0 21d ago Incus has Unbounded YAML Metadata Decode via Parsing debiangolang
CVE-2026-35527 medium 5.0 5.0 23d ago Incus has Blind SSRF via Image Import Preflight HEAD debiangolang
CVE-2026-40243 medium 4.8 4.8 22d ago Incus has an OVN TLS Verification that Accepts Peer-Supplied Roots debiangolang
CVE-2026-41685 medium 4.3 4.3 21d ago Incus is affected by unbounded binary import disk exhaustion debiangolang
CVE-2026-23954 unknown 4mo ago Incus is a system container and virtual machine manager. Versions 6.21.0 and below allow a user with the ability to launch a container with a custom image (e.g a member of the ‘incus’ group) to use d… debiangolang