CVE-2026-63293
A link following vulnerability in LXD allows an attacker to achieve arbitrary file read and write operations on the host system. When import
CVSS
9.9
Crítico
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 12 ago 2026 · Última mod.: 12 ago 2026 · CWE-59
Sin historial EPSS suficiente todavía.
A link following vulnerability in LXD allows an attacker to achieve arbitrary file read and write operations on the host system. When importing or unpacking an image archive, LXD fails to validate whether the metadata.yaml file is a symbolic link. An attacker can exploit this flaw by providing a crafted image archive with a symlinked metadata.yaml file pointing to target file paths on the host system.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-632949.9 CRÍ—
———A link following vulnerability in LXD allows an attacker to achieve root command execution on the host system. During the import or unpacking of crafted image or backup archives, LXD fails to properly validate and confine the backup.yaml file when it exists as a symbolic link. An attacker can exploit this flaw by providing a malicious archive with a symlinked backup.yaml file, causing LXD to process unconfined configuration metadata and execute arbitrary commands with root privileges.6hCVE-2026-656806.7 MED—
——0Improper link resolution before file access ('link following') in Microsoft OneDrive allows an authorized attacker to elevate privileges locally.12hCVE-2026-729715.5 MED—
——0Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally.1dCVE-2026-703485.5 MED—
——0Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attacker to deny service locally.12hCVE-2026-628327.8 ALT—
——0Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.12hCVE-2026-628127.8 ALT—
——0Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.12h