Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.1 HIGH
CVE-2026-40251 — Incus out-of-bounds panic in snapshot metadata handling allows denial of service

Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage volume import logic allows an authenticated user with access to the storage …

incus | Remote | Denial of Service
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
4.8 MEDIUM
CVE-2026-40243 — Incus OVN TLS verification accepts peer-supplied roots and permits endpoint impersonation

Incus is a system container and virtual machine manager. In versions before 7.0.0, broken TLS validation logic in the OVN database connection logic can allow connections to an attacker's OVN database…

incus | Remote | Cryptography
May 06, 2026 May 08, 2026
May 06, 2026
May 08, 2026
7.1 HIGH
CVE-2026-40197 — Incus nil-pointer dereference in custom volume import allows denial of service

Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage volume import logic allows an authenticated user with access to the storage …

incus | Remote | Denial of Service
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
7.1 HIGH
CVE-2026-40195 — Incus nil-pointer dereference in storage bucket import allows denial of service

Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage bucket import logic allows an authenticated user with access to the storage …

incus | Remote | Denial of Service
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
Showing 20 of 7244 Results