Template Injection in instance snapshot creation component in Canonical LXD (>= 4.0) allows an attacker with instance configuration permissions to read arbitrary files on the host system via specially crafted snapshot pattern templates using the Pongo2 template engine.
2025-10-02T10:15:38.707
2025-10-22T15:39:01.910
Analyzed
CVSSv3.1: 6.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | canonical | lxd | < 5.21.4 | Yes |
| Application | canonical | lxd | < 6.5 | Yes |
| Operating System | linux | linux_kernel | - | No |