Feed/CVE-2026-42510
CVE-2026-42510MEDIUMCVSS 6.6

OpenStack Ironic is Vulnerable to Inclusion of Functionality from Untrusted Control Sphere

Published Apr 28, 2026·Updated Aug 20, 2026

NVD Description

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.

Affected Packages (1)

ironicPYPI
Fixed in 35.0.1

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free