CRITICAL9.6PyPIcrates.ionpmGo
GHSA-f396-4rp4-7v2j· CVE-2026-46703, GO-2026-5344Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host
Modified: 9/10/2026
package
pkg:crates.io/boxlite
Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host
Modified: 9/10/2026
BoxLite: Permission Bypass Allows Modification of Read-Only Files
Modified: 9/10/2026
Read-only volume remount bypass via guest CAP_SYS_ADMIN
Modified: 6/29/2026
OCI layer symlink escape → arbitrary host write
Modified: 6/29/2026