In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file.
https://www.helpnetsecurity.com/2026/05/18/debian-13-5-released/
https://github.com/systemd/systemd/security/advisories/GHSA-9mj4-rrc3-gjcx