openstack / ironic
6 known vulnerabilities in openstack ironic.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-42997 | Medium | 0.4% | 7.7 | An issue was discovered in idrac in OpenStack Ironic before 35.0.1. During impor… | |
| CVE-2026-48681 | Low | 0.6% | 5.9 | OpenStack Ironic through before 35.0.2 allows file overwrite via directory trave… | |
| CVE-2026-42510 | Low | 0.6% | 6.6 | OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default config… | |
| CVE-2026-50589 | Low | 0.4% | 5.3 | In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could su… | |
| CVE-2026-44917 | Low | 0.3% | 4.9 | OpenStack Ironic before 35.0.2 allows a malicious authenticated project admin or… | |
| CVE-2026-46447 | Low | 0.3% | 5.8 | OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if… |