VYPR
Medium severity4.8NVD Advisory· Published Jul 24, 2026· Updated Jul 30, 2026

CVE-2026-66139

CVE-2026-66139

Description

OpenStack Zaqar through 22.0.0 allows authentication bypass via an EXTRA-SPEC header when a UUID is known.

Affected products

2
  • OpenStack/Zaqarinferred2 versions
    <=22.0.0+ 1 more
    • (no CPE)range: <=22.0.0
    • (no CPE)range: <=22.0.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.