Safety vulnerability ID: 68006
The information on this page was manually curated by our Cybersecurity Intelligence Team.
OpenStack Keystone Essex (2012.1) and Folsom (2012.2) does not properly handle EC2 tokens when the user role has been removed from a tenant, which allows remote authenticated users to bypass intended authorization restrictions by leveraging a token for the removed user role.
Latest version: 26.0.0
OpenStack Identity
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application