THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-63295 (MEDIUM 4.3) — An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails t

[NVD] CVE-2026-63295 (MEDIUM 4.3) — An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails t

lownvdPublished 2026-08-12

CVE-2026-63295 CVSS: 4.3 MEDIUM Published: 2026-08-12T20:17:47.303

An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails to enforce the requirement if an instance configurati

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-63295