VYPR

virt-exportserver

by Kubevirt

CVEs (1)

  • CVE-2026-9804HigMay 28, 2026
    risk 0.43cvss 7.7epss 0.01

    A flaw was found in KubeVirt's virt-exportserver component. An attacker with specific namespace-level access can exploit a path traversal vulnerability in the VMExport directory endpoint. By placing a symbolic link (symlink) within an exported filesystem Persistent Volume Claim…