Containerd
This hub aggregates every CVE we track for Containerd, a product in the ai ml space. Use it to gauge the current risk picture and drill into individual advisories.
19
CVEs tracked
0
Critical
5
High
0
In CISA KEV
Severity distribution
MEDIUM13HIGH5LOW1
Monthly trend
0
0
0
0
0
0
0
0
1
0
2
0
0
0
0
0
2
0
0
1
0
0
0
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Containerd.
- CVE-2025-47911Quadratic parsing complexity in golang.org/x/net/html5.3
- CVE-2025-64329containerd CRI server: Host memory exhaustion through Attach goroutine leak5.5
- CVE-2024-25621containerd affected by a local privilege escalation via wide permissions on CRI directory7.3
- CVE-2025-47291containerd CRI plugin: Incorrect cgroup hierarchy assignment for containers running in usernamespaced Kubernetes pods.7.5
- CVE-2025-47290Containerd vulnerable to host filesystem access during image unpack5.9
- CVE-2024-40635containerd has an integer overflow in User ID handling4.6
- CVE-2023-25173containerd supplementary groups are not set up properly5.3
- CVE-2023-25153containerd OCI image importer memory exhaustion6.2
- CVE-2022-23471containerd CRI stream server: Host memory exhaustion through terminal resize goroutine leak5.7
- CVE-2022-31030containerd CRI plugin: Host memory exhaustion through ExecSync5.5
- CVE-2022-24769Default inheritable capabilities for linux container should be empty5.9
- CVE-2022-23648Insecure handling of image volumes in containerd CRI plugin7.5
- CVE-2021-43816Improper Preservation of Permissions in containerd8.0
- CVE-2021-41190Clarify Content-Type handling in OCI spec3.0
- CVE-2021-41103Insufficiently restricted permissions on plugin directories7.8
Product normalization is registry-driven with AI assist and human review. How it works