CVE-2026-48752

Incus is a system container and virtual machine manager. Prior to version 7.2.0, a specially crafted image or instance backup can be used to read or create/write arbitrary files on the host; possibly leading to arbitrary command execution. Version 7.2.0 patches the issue.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-21 15:16

Updated : 2026-08-21 17:16


NVD link : CVE-2026-48752

Mitre link : CVE-2026-48752

CVE.ORG link : CVE-2026-48752


JSON object : View

Products Affected

No product.

CWE
CWE-73

External Control of File Name or Path