Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-54421

около 2 месяцев назад

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.8
EPSS: Низкий
redhat логотип

CVE-2026-54421

около 2 месяцев назад

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-54421

около 2 месяцев назад

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2026-54421

около 2 месяцев назад

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fie ...

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-j4cw-mcg2-2q78

около 2 месяцев назад

In OpenStack Ironic through 35.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-54421

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.8
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-54421

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-54421

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.8
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-54421

In OpenStack Ironic before 37.0.1, when applying a PATCH to update fie ...

CVSS3: 6.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-j4cw-mcg2-2q78

In OpenStack Ironic through 35.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue.

CVSS3: 6.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу