Skip to content
Tech CEO Daily

Cloudflare fixes flaw that let Containers customers read other tenants’ leftover data

A researcher found reused disk blocks in Cloudflare Containers and Sandboxes held residual data from other customers; Cloudflare says it saw no malicious exploitation.

TC

By Tech CEO Daily Staff, Newsroom

· 2 min read

Stacks of colorful shipping containers at a port at dusk
AI-generated image for illustration. Not a photograph of the events described.

The news

Cloudflare disclosed on September 24 that a storage configuration in Cloudflare Containers and Cloudflare Sandboxes could expose residual data from one customer’s workload to another. The issue was reported through its bug bounty programme on September 4 by Oren Yomtov of Accomplish.

According to Cloudflare, the root cause was a Linux storage setting that skipped zeroing disk blocks before reusing them, so fragments of a previous container’s files could remain readable by the next tenant on the same host. The researcher recovered residual material on 18 of 24 container placements. BleepingComputer reported that the leftovers could include database pages, browser profiles, .env files and credential files.

Cloudflare said exploitation required a Workers Paid account, an attacker could not choose a target or guarantee what data they would find, and active disks could not be read or modified. Its telemetry review found no evidence of malicious exploitation beyond the researcher’s authorised testing.

The company said it disabled the setting fleet-wide, retired container disks created before the fix, cleared cached image snapshots and completed remediation on September 19, 15 days after the report. Cloudflare said customers do not need to take any action.

The numbers

Reported
Sept 4, 2026
Fully remediated
Sept 19, 2026
Placements with residual data in testing
18 of 24

Why CEOs should care

Multi-tenant cloud services promise isolation between customers, and this case shows that promise can fail at low levels of the stack. Cloudflare’s response was quick and transparent, but leaders should ask their engineering teams whether workloads write secrets, API keys or customer data to local disk, and whether those secrets are rotated regularly.

For vendor risk, add questions to cloud and SaaS reviews: how does the provider sanitise shared storage between tenants, how does it detect cross-tenant access, and how fast has it fixed past isolation bugs? Cloudflare’s 15-day fix-to-fleet timeline is a useful benchmark.

The bigger picture

Serverless containers and AI agent sandboxes are growing fast, often running untrusted or customer-supplied code. Isolation flaws in these environments are likely to draw more researcher attention.

Sources

TC
Tech CEO Daily Staff

Newsroom

Reporting and analysis from the Tech CEO Daily newsroom. Each story is researched from primary sources — company announcements, regulatory filings and official advisories — and fact-checked before publication.

Spotted an error? Request a correction. Read our editorial standards and AI policy.

The Daily Brief

The technology briefing for people running businesses.

Weekdays at 6 a.m. ET. Free.

More in Cybersecurity