Direct Vulnerabilities

Known vulnerabilities in the incus package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2026-81496

<7.0.1-2
  • L
CVE-2026-81500

<7.0.1-3
  • L
CVE-2026-81493

<7.0.1-2
  • L
CVE-2026-81495

<7.0.1-2
  • L
CVE-2026-81497

<7.0.1-2
  • L
CVE-2026-81498

<7.0.1-2
  • L
CVE-2026-81494

<7.0.1-2
  • L
CVE-2026-81501

<7.0.1-3
  • L
CVE-2026-81499

<7.0.1-2
  • L
External Control of File Name or Path

<7.0.1-2
  • L
Incorrect Authorization

<7.0.1-2
  • L
Missing Authorization

<7.0.1-2
  • L
Link Following

<7.0.1-2
  • L
Incorrect Authorization

<7.0.1-2
  • L
Arbitrary Argument Injection

<7.0.1-2
  • L
Missing Authorization

<7.0.0-5
  • L
Improper Access Control

<7.0.0-5
  • L
Improper Input Validation

<7.0.0-5
  • L
Improper Input Validation

<7.0.0-5
  • L
External Control of File Name or Path

<7.0.0-5
  • L
External Control of File Name or Path

<7.0.0-5
  • L
Improper Access Control

<7.0.0-5
  • L
External Control of File Name or Path

<7.0.0-5
  • L
NULL Pointer Dereference

<7.0.0-2
  • L
External Control of File Name or Path

<7.0.0-2
  • L
NULL Pointer Dereference

<7.0.0-2
  • L
NULL Pointer Dereference

<7.0.0-2
  • L
NULL Pointer Dereference

<7.0.0-1
  • M
Improper Certificate Validation

<7.0.0-1
  • M
NULL Pointer Dereference

<7.0.0-1
  • L
Allocation of Resources Without Limits or Throttling

<7.0.0-1
  • M
Allocation of Resources Without Limits or Throttling

<7.0.0-1
  • L
NULL Pointer Dereference

<7.0.0-1
  • M
Improper Validation of Array Index

<7.0.0-1
  • M
Server-Side Request Forgery (SSRF)

<7.0.0-1
  • M
NULL Pointer Dereference

<7.0.0-1
  • L
CVE-2026-34179

<6.0.6-3
  • L
CVE-2026-34178

<6.0.6-3
  • L
CVE-2026-34177

<6.0.2-1
  • C
Directory Traversal

<6.0.6-2
  • L
Symlink Following

<6.0.6-2
  • M
Improper Certificate Validation

<6.0.6-2
  • L
Improper Neutralization of Special Elements Used in a Template Engine

<6.0.6-2
  • L
Allocation of Resources Without Limits or Throttling

<6.0.6-2
  • L
Improper Authentication

<7.0.0-1
  • L
CVE-2026-28384

<6.0.6-1
  • L
Directory Traversal

<6.0.5-8
  • L
CRLF Injection

<6.0.5-8
  • H
CVE-2025-64507

<6.0.5-4
  • M
CVE-2025-54293

<6.0.5-1
  • M
CVE-2025-54288

<6.0.5-1
  • M
CVE-2025-54287

<6.0.5-1
  • H
CVE-2025-54286

<6.0.5-1
  • M
CVE-2025-54290

<6.0.5-1
  • M
CVE-2025-54291

<6.0.5-1
  • H
CVE-2025-54289

<6.0.5-1
  • L
CVE-2024-6156

<6.0.3-1