Skip to content
cyberMEDIUM2026-05-05 21:16 UTC

CVE-2026-35527 - Incus blind SSRF via image import preflight HEAD request

CVE ID :CVE-2026-35527 Published : May 5, 2026, 9:16 p.m. | 1 hour, 11 minutes ago Description :Incus is an open source container and virtual machine manager. In versions prior to 7.0.0, the image import flow issues an outbound HEAD request to a user-supplied URL before validating the request

ORIGINAL SOURCE →via CVE Feed Latest
ADVERTISEMENT
⚡ STAY AHEAD

Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.

GET THE SUNDAY BRIEFING →

RELATED · cyber