VDB

CVE-2026-55621

CVE-2026-55621 PUBLISHED CVSS 7.699999809265137 HIGH

Incus has a project restriction bypass for custom volume copy across projects

EPSS 0.34% · 25.3th percentile

Risk Scores

CVSS 3.1
7.699999809265137
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
EPSS Score
0.34%
25.3th percentile

Affected Products

VendorProductVersions
github.comlxc/incus0, 0, 0
alpineincus0, 0, 0
alpineincus-feature0, 0, 0
lxcincus< 7.2.0, < 7.2.0, < 7.2.0
github.comlxc/incus/v70, 0, 0
github.comlxc/incus/v60, 0, 0

Timeline

  • Aug 21, 2026 CVE Published
  • Aug 24, 2026 EPSS Score
  • Sep 3, 2026 Security Advisory
  • Sep 6, 2026 EPSS Score
  • Sep 12, 2026 EPSS Score
  • Sep 17, 2026 EPSS Score
  • Sep 24, 2026 EPSS Score
  • Sep 25, 2026 EPSS Score
  • Sep 27, 2026 EPSS Score
  • Sep 30, 2026 EPSS Score
  • Oct 2, 2026 EPSS Score
  • Oct 6, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›