CVE-2026-48749

Incus is a system container and virtual machine manager. Prior to version 7.2.0, a specially crafted image can be used to read or create/write arbitrary files on the host; possibly leading to arbitrary command execution. Version 7.2.0 fixes the issue.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-21 15:16

Updated : 2026-08-21 16:17


NVD link : CVE-2026-48749

Mitre link : CVE-2026-48749

CVE.ORG link : CVE-2026-48749


JSON object : View

Products Affected

No product.

CWE
CWE-73

External Control of File Name or Path