Canonical
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 1000 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from November 7, 2019 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Monitoring-user password logged in cleartext by postgres_exporter in postgresql VM charm
RPC secret disclosure via vendor data endpoint in Canonical MAAS
LXD client recursive file pull allows directory escape via malicious VM agent
Arbitrary file write on LXD host via symlink in migration stream
Incorrect authorization in LXD storage volume API allows reading volumes from other projects
Path traversal in LXD btrfs storage driver allows arbitrary file deletion and write on host as root
Path traversal via Btrfs optimized-backup subvolumes[].path enables root file/dir manipulation in LXD
LXD Cross-Project Private Image Theft via Unsanitized GetImageFromAnyProject Local Reuse
CLI Path Traversal via Content-Disposition in LXD Image Export/Copy
Instance template path traversal allows arbitrary host file write as root
Monitor Canonical in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.