Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2661▼ 437 respecto a la semana anterior
Críticas / altas1284▼ 85 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)247▼ 271 respecto a la semana anterior
28 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (5.3) | 0.23% | — | Openstack IronicAI | 17/9/2026 | 18/9/2026 | In BMCtest, Ironic is started without authentication and TLS for the duration of the test. Exploiting the problem requires winning the race with bmctest itself, which reduces the attack window and significantly increases its complexity. | |
| Pendiente de análisis | Media (6.3) | 0.33% | — | Openstack IronicAI | 11/9/2026 | 22/9/2026 | OpenStack Ironic through 38.0.0 may send a username and password to an unexpected remote host when Image Service is configured for HTTP(S) Basic Authentication. | |
| Pendiente de análisis | Media (6.3) | 0.30% | — | Openstack IronicAI | 14/8/2026 | 1/9/2026 | In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediately after enrollment with, or changing to, the autodetect deploy interface. | |
| Pendiente de análisis | Media (5) | 0.28% | — | Openstack IronicAI | 5/8/2026 | 9/9/2026 | In OpenStack Ironic through 38.0.0, a project reader that makes a crafted request to Ironic can return Portgroups assigned to Nodes owned or leased by another project. | |
| Aplazada | Alta (7.2) | 0.78% | — | Openstack Ironic Python AgentAI | 24/7/2026 | 30/7/2026 | In OpenStack Ironic Python Agent through 11.6.0, a project-scoped user with the manager role can achieve arbitrary code execution on a running Ironic-Python-Agent via a maliciously constructed configuration, because the value of ntp_server is passed to a shell. | |
| Pendiente de análisis | Media (5.5) | 0.15% | — | Openstack Ironic Python AgentAI | 24/7/2026 | 9/9/2026 | In OpenStack Ironic Python Agent through 11.5.0, a malicious bootc container, when deployed using ironic-python-agent, may be able to extract the credentials used to download it. | |
| Aplazada | Alta (8.2) | 0.48% | — | Openstack IronicAI | 10/7/2026 | 10/7/2026 | In OpenStack Ironic before 37.0.1, an Ironic user with the ability to deploy nodes using the IPMI management interface can maliciously use the send_raw step to send arbitrary IPMI commands to a node, bypassing Ironic's access control. | |
| Aplazada | Media (5.5) | 0.41% | — | Openstack IronicAI | 10/7/2026 | 10/7/2026 | OpenStack Ironic through before 37.0.1 allows creation or modification of nodes cross-project without authorization. | |
| Aplazada | Media (6.8) | 0.47% | — | Openstack IronicAI | 14/6/2026 | 23/7/2026 | In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issue; the POST outcome is not a security issue. | |
| Modificada | Alta (7.5) | 0.74% | — | Openstack Ironic | 5/6/2026 | 23/7/2026 | In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC service and effect a service crash. | |
| Analizada | Alta (8.1) | 0.85% | — | Openstack Ironic | 4/6/2026 | 22/7/2026 | OpenStack Ironic through before 35.0.2 allows file overwrite via directory traversal during deployment with a crafted ISO image. | |
| Analizada | Media (4.9) | 0.47% | — | Openstack Ironic | 4/6/2026 | 22/7/2026 | OpenStack Ironic before 35.0.2 allows a malicious authenticated project admin or manager to read local files on the Ironic conductor via a pxe_template. | |
| Modificada | Alta (7.7) | 0.43% | — | Openstack Ironic | 3/6/2026 | 22/7/2026 | OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info. | |
| Analizada | Media (6.5) | 0.56% | — | Openstack Ironic | 14/5/2026 | 17/6/2026 | In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///dev/zero URL. | |
| Analizada | Baja (3) | 0.35% | — | Openstack Ironic | 8/5/2026 | 18/6/2026 | In OpenStack Ironic before 35.0.2 (in a certain non-default configuration), instance_info['ks_template'] is rendered without sandboxing. | |
| Modificada | Alta (7.7) | 0.54% | — | Openstack Ironic | 5/5/2026 | 24/7/2026 | An issue was discovered in idrac in OpenStack Ironic before 35.0.1. During import, a user invoking molds can request authorization to be sent to a remote endpoint. The credential forwarded is a time-limited Keystone token (which provides access to all OpenStack services Ironic is authorized for); or basic credentials… | |
| Modificada | Alta (7.5) | 1.1% | — | Openstack Ironic Python Agent | 1/5/2026 | 9/9/2026 | An issue was discovered in OpenStack ironic-python-agent 1.0.0 through 11.5.0. Ironic Python Agent (IPA) sometimes executes grub-install from within a chroot of the deployed partition image, leading to code execution in the case of a malicious image. | |
| Modificada | Alta (7.2) | 0.74% | — | Openstack Ironic | 28/4/2026 | 20/8/2026 | OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface. | |
| Aplazada | Baja (2.8) | 0.19% | — | Openstack IronicAI | 8/5/2025 | 17/6/2026 | OpenStack Ironic before 29.0.1 can write unintended files to a target node disk during image handling (if a deployment was performed via the API). A malicious project assigned as a node owner can provide a path to any local file (readable by ironic-conductor), which may then be written to the target node disk. This is… | |
| Aplazada | Crítica (9.3) | 0.18% | — | Philips Respironics VentilatorAI | 14/11/2024 | 17/6/2026 | There is no limit on the number of failed login attempts permitted with the Clinician Password or the Serial Number Clinician Password. An attacker could execute a brute-force attack to gain unauthorized access to the ventilator, and then make changes to device settings that could disrupt the function of the device… | |
| Aplazada | Media (5.3) | 0.66% | — | Openstack IronicAI | 4/10/2024 | 17/6/2026 | In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images to a raw format for streaming. | |
| Aplazada | Media (4.3) | 0.55% | — | Openstack IronicAIOpenstack Ironic-python-agentAIQemu-imgAI | 6/9/2024 | 17/6/2026 | In OpenStack Ironic before 26.0.1 and ironic-python-agent before 9.13.1, there is a vulnerability in image processing, in which a crafted image could be used by an authenticated user to exploit undesired behaviors in qemu-img, including possible unauthorized access to potentially sensitive data. The affected/fixed… | |
| Aplazada | Media (4.7) | 0.21% | — | Openstack IronicAIOpenstack Ironic InspectorAI | 17/4/2024 | 17/6/2026 | Ironic-image is an OpenStack Ironic deployment packaged and configured by Metal3. When the reverse proxy mode is enabled by the `IRONIC_REVERSE_PROXY_SETUP` variable set to `true`, 1) HTTP basic credentials are validated on the HTTPD side in a separate container, not in the Ironic service itself and 2) Ironic listens… | |
| Modificada | Alta (7.5) | 0.43% | — | Metal3 Ironic-image | 25/8/2023 | 17/6/2026 | ironic-image is a container image to run OpenStack Ironic as part of Metal³. Prior to version capm3-v1.4.3, if Ironic is not deployed with TLS and it does not have API and Conductor split into separate services, access to the API is not protected by any authentication. Ironic API is also listening in host network. In… | |
| Modificada | Crítica (9.1) | 2.5% | — | Openstack Ironic-inspectorRedhat Openstack | 30/7/2019 | 17/6/2026 | A vulnerability was found in openstack-ironic-inspector all versions excluding 5.0.2, 6.0.3, 7.2.4, 8.0.3 and 8.2.1. A SQL-injection vulnerability was found in openstack-ironic-inspector's node_cache.find_node(). This function makes a SQL query using unfiltered data from a server reporting inspection results (by a… |