CVE-2026-53359 (Januscape): The 16-Year-Old KVM Bug That Lets a Guest Own the Host
Januscape is a Linux KVM/x86 use-after-free that can turn nested virtualization into host-root code execution. Red Hat scores it CVSS 7.8; a host-crash PoC is public, while the full escape exploit remains withheld.