CVE-2026-63294
A link following vulnerability in LXD allows an attacker to achieve root command execution on the host system. During the import or unpacking of crafted image or backup archives, LXD fails to properly validate and confine the backup.yaml file when it exists as a symbolic link. An attacker can exploit this flaw by providing a malicious archive with a symlinked backup.yaml file, causing LXD to process unconfined configuration metadata and execute arbitrary commands with root privileges.
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.9
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
- EPSS probability
- 1.21%
- CWE
- CWE-59
- Published
- 2026-08-12
- Last modified
- 2026-08-13
Affected products
- Canonical LXD
- Canonical LXD
- Canonical LXD
- Canonical LXD
Weakness type
Related vulnerabilities
- CVE-2026-11940 — tarfile extraction filter bypass allows escaping the destination directory
- CVE-2026-7374 — Kubevirt: kubevirt virt-handler: privilege escalation and node compromise via symlink following vulnerability
- CVE-2026-63293 — Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root
- CVE-2026-63125 — Incus vulnerable to root RCE via image backup.yaml symlink
- CVE-2026-57571 — Crawl4AI arbitrary file write via download filename path traversal
- CVE-2026-54352 — Budibase: Arbitrary file read by workspace-builder via PWA-zip symlink upload
- CVE-2026-53476 — Assisted-migration-agent: vddk tarball chained-symlink arbitrary file write
- CVE-2026-19429 — An incomplete patch for CVE-2026-33001 in Jenkins Project Jenkins through LTS 2.555.3 allows an authenticated remote att