← Back to feed Search feed

containerd vulnerabilities

12 entries matching containerd — updated 2026-09-18 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2026-53495containerd is an open-source container runtime. Prior to 1.7.35, 2.0.12, 2.2.8, and 2.3.5, containerd on Linux with the MEDIUM6.89%ileNVD2026-09-14
CVE-2026-84304gRPC-Go: Heap Memory Exhaustion (OOM) via HTTP/2 DATA Frame FragmentationHIGH7.535%ileMicrosoft2026-09-08
CVE-2026-56852Infinite loop on invalid input in golang.org/x/textHIGH7.540%ileMicrosoft2026-07-14
CVE-2026-10722cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflowLOW3.38%ileMicrosoft2026-06-09
CVE-2026-39821Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idnaCRITICAL10.051%ileMicrosoft2026-05-12
CVE-2026-33814Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/netHIGH7.554%ileMicrosoft2026-05-12
CVE-2026-25680Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/htmlMEDIUM6.526%ileMicrosoft2026-05-12
CVE-2026-25681Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/htmlMEDIUM6.113%ileMicrosoft2026-05-12
CVE-2026-27136Invoking duplicate attributes can cause XSS in golang.org/x/net/htmlMEDIUM6.113%ileMicrosoft2026-05-12
CVE-2026-42502Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/htmlMEDIUM6.113%ileMicrosoft2026-05-12
CVE-2026-42506Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/htmlMEDIUM6.115%ileMicrosoft2026-05-12
CVE-2026-39824Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windowsLOW3.32%ileMicrosoft2026-05-12