CRITICAL10.0CVE-2025-62596youki container escape and denial of service due to arbitrary write gadgets and procfs write redirects
from 0, < 0.5.7
CRITICAL10.0CVE-2025-62161youki container escape via "masked path" abuse due to mount race conditions
from 0, < 0.5.7
HIGH7.0CVE-2025-54867Youki: If /proc and /sys in the rootfs are symbolic links, they can potentially be exploited to gain access to the host root filesystem.