THREAT OPS › Threat News › [NVD] CVE-2026-63295 (MEDIUM 4.3) — An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails t
[NVD] CVE-2026-63295 (MEDIUM 4.3) — An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails t
CVE-2026-63295 CVSS: 4.3 MEDIUM Published: 2026-08-12T20:17:47.303
An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails to enforce the requirement if an instance configurati
Indicators of compromise
- CVE-2026-63295cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-63295