CVE-2026-47699 | confidential-containers guest-components up to 0.19.x OCI Image Unpacker unpack.rs try_hardlink_fallback path traversal
A vulnerability identified as critical has been detected in confidential-containers guest-components up to 0.19.x. This vulnerability affects the function image_rs::stream::unpack::try_hardlink_fallback of the file image-rs/src/stream/unpack.rs of the component OCI Image Unpacker. This manipulation causes path traversal.
This vulnerability is registered as CVE-2026-47699. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.VulDB Recent EntriesRead More