CVE-2026-44917
MEDIUM
NVD
CVSS Score
4.9
Severity
MEDIUM
Published
Jun 04, 2026
Vendor
unknown
Description
OpenStack Ironic before 35.0.2 allows a malicious authenticated project admin or manager to read local files on the Ironic conductor via a pxe_template.