CVE-2026-44918
OpenStack Ironic through before 37.0.1 allows creation or modification of nodes cross-project without authorization.
Faiblesse
OpenStack Ironic through before 37.0.1 allows creation or modification of nodes cross-project without authorization.
Références
- https://bugs.launchpad.net/ironic/+bug/2150450
- https://lists.openstack.org/archives/list/[email protected]/thread/PAJKDWS23MKSSNX22JEVDA7RWN3BHJYC/
- https://security.openstack.org/ossa/OSSA-2026-026.html
- https://www.openwall.com/lists/oss-security/2026/07/08/4
- http://www.openwall.com/lists/oss-security/2026/07/08/4
Trouvez la faille avant un attaquant.
Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.