Количество 6
Количество 6
CVE-2026-55621
Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for custom volume copying where an attacker knowing the name of a project that they don't have access to and the name of a custom volume in that project can copy the custom volume to a new project. This issue could allow an attacker to access secrets in custom volumes they are not authorized to access. Version 7.2.0 patches the issue.
CVE-2026-55621
Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for custom volume copying where an attacker knowing the name of a project that they don't have access to and the name of a custom volume in that project can copy the custom volume to a new project. This issue could allow an attacker to access secrets in custom volumes they are not authorized to access. Version 7.2.0 patches the issue.
CVE-2026-55621
Incus is a system container and virtual machine manager. Prior to vers ...
ROS-20260824-80-0002
Уязвимость incus
ROS-20260824-73-0002
Уязвимость incus
GHSA-64f3-v33m-w89f
Incus has a project restriction bypass for custom volume copy across projects
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-55621 Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for custom volume copying where an attacker knowing the name of a project that they don't have access to and the name of a custom volume in that project can copy the custom volume to a new project. This issue could allow an attacker to access secrets in custom volumes they are not authorized to access. Version 7.2.0 patches the issue. | CVSS3: 7.7 | 0% Низкий | 26 дней назад | |
CVE-2026-55621 Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for custom volume copying where an attacker knowing the name of a project that they don't have access to and the name of a custom volume in that project can copy the custom volume to a new project. This issue could allow an attacker to access secrets in custom volumes they are not authorized to access. Version 7.2.0 patches the issue. | CVSS3: 7.7 | 0% Низкий | 26 дней назад | |
CVE-2026-55621 Incus is a system container and virtual machine manager. Prior to vers ... | CVSS3: 7.7 | 0% Низкий | 26 дней назад | |
ROS-20260824-80-0002 Уязвимость incus | CVSS3: 7.7 | 0% Низкий | 23 дня назад | |
ROS-20260824-73-0002 Уязвимость incus | CVSS3: 7.7 | 0% Низкий | 23 дня назад | |
GHSA-64f3-v33m-w89f Incus has a project restriction bypass for custom volume copy across projects | CVSS3: 7.7 | 0% Низкий | 19 дней назад |
Уязвимостей на страницу