VendorsAmazonfirecrackerany version
Vulnerabilities

Amazon Firecracker any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2026-5747
Out-of-bounds Write in Firecracker virtio-pci Transport
Published 2026-04-07 · Analyzed
8.7EPSS 0.002
CVE-2020-27174
In Amazon AWS Firecracker before 0.21.3, and 0.22.x before 0.22.1, the serial console buffer can grow its memory usage without limit when data is sent to the standard input. This can result in a memory leak on the microVM emulation thread, possibly occupying more memory than intended on the host.
Published 2020-10-16 · Modified
7.5EPSS 0.017
CVE-2026-1386
Arbitrary Host File Overwrite via Symlink in Firecracker Jailer
Published 2026-01-23 · Analyzed
6.0EPSS 0.002