GO-2025-3781: Incus Allocation of Resources Without Limits allows firewall rule bypass on managed bridge networks in github.com/lxc/incus
GO-2025-3782: Incus creates nftables rules that partially bypass security options in github.com/lxc/incus
GO-2025-4115: Incus vulnerable to local privilege escalation through custom storage volumes in github.com/lxc/incus
GO-2026-4357: Incus container image templating arbitrary host file read and write in github.com/lxc/incus
GO-2026-4359: Incus container environment configuration newline injection in github.com/lxc/incus
GO-2026-4879: Local Incus UI web server vulnerable to nuthentication bypass in github.com/lxc/incus
GO-2026-4881: Incus vulnerable to arbitrary file read and write through pongo templates in github.com/lxc/incus
GO-2026-4882: Incus does not verify combined fingerprint when downloading images from simplestreams servers in github.com/lxc/incus
GO-2026-4884: Incus has an abitrary file write through its systemd-creds options in github.com/lxc/incus
GO-2026-4885: Incus vulnerable to local privilege escalation through VM screenshot path in github.com/lxc/incus
GO-2026-4886: Incus vulnerable to denial of source through crafted bucket backup file in github.com/lxc/incus