Low severity3.0NVD Advisory· Published May 8, 2026· Updated Jun 18, 2026
CVE-2026-44916
CVE-2026-44916
Description
In OpenStack Ironic before 35.0.2 (in a certain non-default configuration), instance_info['ks_template'] is rendered without sandboxing.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
3- www.openwall.com/lists/oss-security/2026/05/11/7nvdMailing ListPatchThird Party Advisory
- security.openstack.org/ossa/OSSA-2026-012.htmlnvdPatchVendor Advisory
- bugs.launchpad.net/ironic/+bug/2148307nvdIssue TrackingMitigationThird Party Advisory
News mentions
0No linked articles in our index yet.