Youki Dev maintains a container runtime implementation, a niche but foundational component in containerized environments. The observed vulnerability disclosures are sparse and lack a distinctive pattern of recurrent weakness classes, suggesting exposure concentrated in the runtime's core mechanics. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Youki Dev over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-62596CRITICAL Youki is a container runtime written in Rust. In versions 0.5.6 and below, youki’s apparmor handling performs insufficiently strict write-target validation, and when combined with | Nov 6, 2025 | 10.0 | 30 | NO | NO |
CVE-2025-62161CRITICAL Youki is a container runtime written in Rust. In versions 0.5.6 and below, the initial validation of the source /dev/null is insufficient, allowing container escape when youki util | Nov 6, 2025 | 10.0 | 29 | NO | NO |
CVE-2025-54867HIGH Youki is a container runtime written in Rust. Prior to version 0.5.5, if /proc and /sys in the rootfs are symbolic links, they can potentially be exploited to gain access to the ho | Aug 14, 2025 | 7.0 | 23 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Youki Dev.
Media articles that mention a CVE ID that affects a product developed by Youki Dev — matched by CVE ID, not by vendor name.