cbcvebase.

Canonical Multipass vulnerabilities

5 known vulnerabilities affecting canonical/multipass.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5

Vulnerabilities

Page 1 of 1
CVE-2026-49238P3HIGHCVSS 8.4fixed in 1.16.32026-05-28
CVE-2026-49238 [HIGH] CWE-22 CVE-2026-49238: An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server comp An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server component (sshfs_server), which executes with root privileges on the host, contains a path containment bypass vulnerability within its validate_path function in src/sshfs_mount/sftp_server.cpp. The function performs a plain string prefix comparison on reques
nvd
CVE-2026-49237P3HIGHCVSS 7.8fixed in 1.16.32026-05-28
CVE-2026-49237 [HIGH] CVE-2026-49237: An issue was discovered in Canonical Multipass for macOS before version 1.16.3 due to an incomplete An issue was discovered in Canonical Multipass for macOS before version 1.16.3 due to an incomplete fix for CVE-2025-5199. While the patch in version 1.16.0 updated the ownership of the multipassd daemon binary to root:wheel, five co-located binaries (multipass, qemu-img, qemu-system-aarch64, qemu-system-x86_64, and sshfs_server) in /Library/Application Suppor
nvd
CVE-2021-3626P3HIGHCVSS 8.8fixed in 1.7.0≥ unspecified, < 1.7.02021-10-01
CVE-2021-3626 [HIGH] CWE-73 CVE-2021-3626: The Windows version of Multipass before 1.7.0 allowed any local process to connect to the localhost The Windows version of Multipass before 1.7.0 allowed any local process to connect to the localhost TCP control socket to perform mounts from the operating system to a guest, allowing for privilege escalation.
nvd
CVE-2025-5199P3HIGHCVSS 7.8fixed in 1.16.0fixed in 1.16.32025-07-12
CVE-2025-5199 [HIGH] CWE-276 CVE-2025-5199: In Canonical Multipass up to and including version 1.15.1 on macOS, incorrect default permissions al In Canonical Multipass up to and including version 1.15.1 on macOS, incorrect default permissions allow a local attacker to escalate privileges by modifying files executed with administrative privileges by a Launch Daemon during system startup.
nvd
CVE-2021-3747P4HIGHCVSS 7.8≥ 1.7.0, < 1.7.2≥ 1.7, < 1.7.22021-10-01
CVE-2021-3747 [HIGH] CWE-732 CVE-2021-3747: The MacOS version of Multipass, version 1.7.0, fixed in 1.7.2, accidentally installed the applicatio The MacOS version of Multipass, version 1.7.0, fixed in 1.7.2, accidentally installed the application directory with incorrect owner.
nvd
Canonical Multipass vulnerabilities | cvebase