Junglewise Threat Intelligence

CVE-2025-54289: GO-2025-3999 - Privilege Escalation via WebSocket Connection Hijacking in Operations API in github.com/canonical/lxd

CVE-2025-54289 · Severity: low · CVSS 3.1 · Published 2025-11-05

Technologies: github.com/canonical/lxd (Go). Vendors: Go.

Executive brief

Privilege Escalation via WebSocket Connection Hijacking in Operations API in github.com/canonical/lxd

Affected products

  • Go github.com/canonical/lxd

Related threats