Skip to main content

Vendor/product archive

podman_project / podman CVEs

Beta · best-effort

17 CVEs tagged to podman_project / podman0 Critical, 7 High, 9 Medium, 1 Low, 0 Unrated.

CVE-2026-57231

Published Jun 26, 2026

Podman is a tool for managing OCI containers and pods. From 1.8.1 until 5.8.4, a container image that contains a environment variable with just a key and no value can trick podman…

CVSS 7.5 · High
evidence mentions
3
Buzz score
23.9
Vendor/product tagsBeta · best-effort

CVE-2026-55686

Published Jun 26, 2026

Podman is a tool for managing OCI containers and pods. From 3.0.0 until 5.7.1, running a malicious container image where the WORKDIR path contains a symlink can create a directory…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-33414

Published Apr 14, 2026

Podman is a tool for managing OCI containers and pods. Versions 4.8.0 through 5.8.1 contain a command injection vulnerability in the HyperV machine backend in pkg/machine/hyperv/s…

CVSS 4.0 · Medium
evidence mentions
6
Buzz score
32.5
Vendor/product tagsBeta · best-effort

CVE-2019-25067

Published Jun 9, 2022

A vulnerability, which was classified as critical, was found in Podman and Varlink 1.5.1. This affects an unknown part of the component API. The manipulation leads to Remote Privi…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-20199

Published Feb 2, 2021

Rootless containers run with Podman, receive all traffic with a source IP address of 127.0.0.1 (including from remote hosts). This impacts containerized applications that trust lo…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-17 of 17 CVEsPage 1 of 1