PT-2026-46139 · Openstack+2 · Openstack Ironic+2

·

CVE-2026-48681

·

Published

2026-06-04

·

Updated

2026-06-11

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions OpenStack Ironic versions prior to 35.0.2
Description An issue exists where a crafted ISO image can lead to file overwrite via directory traversal during the deployment process. Directory traversal is a technique that allows an attacker to access and manipulate files or directories outside the intended folder by using special character sequences.
Recommendations Update to version 35.0.2.

Fix

DoS

Relative Path Traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-48681
GHSA-9V62-QX4C-44X5
USN-8421-1

Affected Products

Linuxmint
Openstack Ironic
Ubuntu