CVE-2026-66897 | Canonical LXD up to 4.0.12/5.0.8/5.21.6/6.9 Instance Template Processing metadata.yaml os.Create path traversal
A vulnerability, which was classified as very critical, was found in Canonical LXD up to 4.0.12/5.0.8/5.21.6/6.9. This vulnerability affects the function os.Create of the file metadata.yaml of the component Instance Template Processing. Executing a manipulation can lead to path traversal.
This vulnerability is handled as CVE-2026-66897. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More