Known vulnerabilities in LXD 5.0.9

Software: LXD
Version: 5.0.9
Software CPE: cpe:2.3:a:linux_containers:lxd:*:*:*:*:*:*:*:*
Total vulnerabilities: 7
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting LXD version 5.0.9 LXD 5.0.9 is affected by 7 vulnerabilities: 3 medium, 4 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU152256 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-86334
CWE-22 Low
No
No
4.0.14, 5.0.10, 5.21.8, 6.10 25.09.2026 SB20260925261
#VU152255 - Missing Authorization
CVE-2026-86335
CWE-862 Low
No
No
5.0.10, 5.21.8, 6.10 25.09.2026 SB20260925261
#VU152254 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-85526
CWE-22 Medium
No
No
4.0.14, 5.0.10, 5.21.8, 6.10 25.09.2026 SB20260925261
#VU152253 - Relative Path Traversal
CVE-2026-85185
CWE-23 Medium
No
No
4.0.14, 5.0.10, 5.21.8, 6.10 25.09.2026 SB20260925261
#VU152252 - Missing Authorization
CVE-2026-97335
CWE-862 Low
No
No
5.0.10, 5.21.8, 6.10 25.09.2026 SB20260925261
#VU152251 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-87799
CWE-59 Medium
No
No
4.0.14, 5.0.10, 5.21.8, 6.10 25.09.2026 SB20260925261
#VU152250 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-87798
CWE-59 Low
No
No
4.0.14, 5.0.10, 5.21.8 25.09.2026 SB20260925261