Cloudflare Fixes Flaw That Let One Container Read Another Customer’s Leftover Disk Data

Cloudflare Fixes Flaw That Let One Container Read Another Customer’s Leftover Disk Data
A flaw in Cloudflare Containers allowed one customer to read leftover data from disks previously used by other customers’ containers on the same server. Cloudflare says the issue has been fixed across Containers and Sandboxes, with no evidence that anyone else used the method. #Cloudflare #CloudflareContainers #CloudflareSandboxes #OrenYomtov #Accomplish

Keypoints

  • A flaw in Cloudflare Containers exposed leftover data from previously deleted containers.
  • The issue came from shared disk blocks that were not wiped before reuse.
  • Cloudflare Sandboxes was also affected because it runs on Containers.
  • Researchers recovered directory listings, SQLite databases, browser profiles, and credential files.
  • Cloudflare fixed the problem, restarted affected systems, and found no evidence of outside abuse.

Read More: https://thehackernews.com/2026/09/cloudflare-fixes-flaw-that-let-one.html