Skip to main content

Vendor/product archive

youki-dev / youki CVEs

Beta · best-effort

3 CVEs tagged to youki-dev / youki0 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2025-62596

Published Nov 6, 2025

Youki is a container runtime written in Rust. In versions 0.5.6 and below, youki’s apparmor handling performs insufficiently strict write-target validation, and when combined with…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-62161

Published Nov 6, 2025

Youki is a container runtime written in Rust. In versions 0.5.6 and below, the initial validation of the source /dev/null is insufficient, allowing container escape when youki uti…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54867

Published Aug 14, 2025

Youki is a container runtime written in Rust. Prior to version 0.5.5, if /proc and /sys in the rootfs are symbolic links, they can potentially be exploited to gain access to the h…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1