Skip to main content

Vendor archive

katacontainers CVEs

Beta · best-effort

9 CVEs tagged to vendor katacontainers1 Critical, 6 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-24834

Published Feb 19, 2026

Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. In versions prior to 3.27.0, an…

CVSS 9.3 · Critical
evidence mentions
6
Buzz score
32.5
Vendor/product tagsBeta · best-effort

CVE-2026-24054

Published Jan 29, 2026

Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. In versions prior to 3.26.0, wh…

CVSS 8.8 · High
evidence mentions
5
Buzz score
22.9
Vendor/product tagsBeta · best-effort

CVE-2020-27151

Published Dec 7, 2020

An issue was discovered in Kata Containers through 1.11.3 and 2.x through 2.0-rc1. The runtime will execute binaries given using annotations without any kind of validation. Someon…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-28914

Published Nov 17, 2020

An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a containe…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-2023

Published Jun 10, 2020

Kata Containers doesn't restrict containers from accessing the guest's root filesystem device. Malicious containers can exploit this to gain code execution on the guest and masque…

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-2025

Published May 19, 2020

Kata Containers before 1.11.0 on Cloud Hypervisor persists guest filesystem changes to the underlying image file on the host. A malicious guest can overwrite the image file to gai…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-2024

Published May 19, 2020

An improper link resolution vulnerability affects Kata Containers versions prior to 1.11.0. Upon container teardown, a malicious guest can trick the kata-runtime into unmounting a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1