github.com/containerd/containerd vulnerabilities
CVEs whose affected-version data names the github.com/containerd/containerd package (go). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
12 CVEsRSS
CVE-2026-47262Mediumcontainerd image-triggered runtime DoS via unbounded group parsing
containerd image-triggered runtime DoS via unbounded group parsing
CVE-2024-40635Medium· 4.6PoCcontainerd has an integer overflow in User ID handling
containerd has an integer overflow in User ID handling
CVE-2021-21334Medium· 6.3containerd environment variable leak
containerd environment variable leak
GHSA-7ww5-4wqc-m92cMediumcontainerd allows RAPL to be accessible to a container
containerd allows RAPL to be accessible to a container
CVE-2023-25153Medium· 5.5OCI image importer memory exhaustion in github.com/containerd/containerd
OCI image importer memory exhaustion in github.com/containerd/containerd
CVE-2022-23471Medium· 5.7containerd CRI stream server vulnerable to host memory exhaustion via terminal
containerd CRI stream server vulnerable to host memory exhaustion via terminal
CVE-2022-31030Medium· 5.5containerd CRI plugin: Host memory exhaustion through ExecSync
containerd CRI plugin: Host memory exhaustion through ExecSync
CVE-2020-15157Medium· 6.1containerd v1.2.x can be coerced into leaking credentials during image pull
containerd v1.2.x can be coerced into leaking credentials during image pull
CVE-2021-43816High· 8.0Unprivileged pod using `hostPath` can side-step active LSM when it is SELinux
Unprivileged pod using `hostPath` can side-step active LSM when it is SELinux
GHSA-5j5w-g665-5m35Low· 3.0Ambiguous OCI manifest parsing
Ambiguous OCI manifest parsing
CVE-2021-41103Medium· 5.9Insufficiently restricted permissions on plugin directories
Insufficiently restricted permissions on plugin directories
CVE-2020-15257Medium· 5.2PoCcontainerd-shim API Exposed to Host Network Containers
containerd-shim API Exposed to Host Network Containers