LIVE · cybersecurity feed
Live wire
vendor

Canonical

13 CVEs published in the last four months. Exploited flaws first.

Critical1
High10
Medium2
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-632939.9criticallxdA link following vulnerability in LXD allows an attacker to achieve arbitrary file read and write operations on th24d ago
CVE-2026-326938.8highjujuIn Juju from version 3.0.0 through 3.6.18, the authorization of the "secret-set" tool is not performed correctly, 171d ago
CVE-2026-492388.4highmultipassAn issue was discovered in Canonical Multipass before version 1.16.3.100d ago
CVE-2026-124118.4highlxdBroken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mo71d ago
CVE-2026-492377.8highmultipassAn issue was discovered in Canonical Multipass for macOS before version 1.16.3 due to an incomplete fix for CVE-20100d ago
CVE-2026-38887.8highubuntu linuxLocal privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's pri172d ago
CVE-2026-473317.8highubuntu linuxUbuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linked list.100d ago
CVE-2026-473337.8highubuntu linuxUbuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly compute the size o100d ago
CVE-2026-326927.6highjujuAn authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions 3.1.6 through 171d ago
CVE-2026-34977.5highubuntu linuxVulnerability in the OpenSSH GSSAPI delta included in various Linux distributions.177d ago
CVE-2026-96407.2highlxdA privilege escalation vulnerability exists in LXD from 6.0 before 6.9, 5.21.0 before 5.21.5, and 5.0.0 before 5.0.71d ago
CVE-2026-326946.6mediumjujuIn Juju from version 3.0.0 through 3.6.18, when a secret owner grants permissions to a secret to a grantee, the se171d ago
CVE-2026-326915.3mediumjujuA race condition in the secrets management subsystem of Juju versions 3.0.0 through 3.6.18 allows an authenticated171d ago

Filter the full tracker by Canonical