CVE-2025-54289

Publication date

2025-10-02 09:23:03

Family

canonical

State

PUBLISHED

Description

Privilege Escalation in operations API in Canonical LXD <6.5 on multiple platforms allows attacker with read permissions to hijack terminal or console sessions and execute arbitrary commands via WebSocket connection hijacking format