CVE-2026-63293 | Canonical LXD up to 4.0.11/5.0.7/5.21.5/6.9 Image Import metadata.yaml symlink

SecurityVulns

A vulnerability was found in Canonical LXD up to 4.0.11/5.0.7/5.21.5/6.9. It has been rated as critical. Affected by this vulnerability is an unknown functionality of the file metadata.yaml of the component Image Import. Performing a manipulation results in symlink following.

This vulnerability is known as CVE-2026-63293. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More