A vulnerability classified as critical has been found in Canonical LXD up to 5.0.6/5.21.4/6.7.x. Affected is an unknown function of the file backup/index.yaml of the component Backup Import. This manipulation causes improper input validation.
The identification of this vulnerability is CVE-2026-34178. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.