No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 29 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 29 Sep 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SSRF Vulnerability in OpenStack Glance Image API v2 |
Tue, 29 Sep 2026 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 28 Sep 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openstack
Openstack glance |
|
| Vendors & Products |
Openstack
Openstack glance |
Sat, 26 Sep 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SSRF Vulnerability in OpenStack Glance Image API v2 | |
| Weaknesses | CWE-918 |
Fri, 25 Sep 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Server-Side Request Forgery (SSRF) vulnerability exists in the Image API (v2) of OpenStack Glance. When the show_multiple_locations configuration option is enabled in glance-api.conf, an authenticated attacker can manipulate the locations attribute of an image in the queued state by sending a crafted HTTP PATCH request | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-09-29T15:56:50.706Z
Reserved: 2026-06-08T00:00:00.000Z
Link: CVE-2026-51772
Updated: 2026-09-29T03:13:20.379Z
Status : Received
Published: 2026-09-25T13:17:14.550
Modified: 2026-09-29T16:17:08.013
Link: CVE-2026-51772
No data.
OpenCVE Enrichment
Updated: 2026-09-29T05:30:12Z