ironic
PyPI9 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting ironicpage 1 of 1
- CVE-2016-4985HIGHCVSS 7.5EG 7.5fixed in 4.2.5 or 5.1.2, by version range2016-07-12
vulnerable: 0.0
The ironic-api service in OpenStack Ironic before 4.2.5 (Liberty) and 5.x before 5.1.2 (Mitaka) allows remote attackers to obtain sensitive information about a registered node by leveraging knowledge of the MAC address of a network card be…
- CVE-2024-47211MEDIUMCVSS 5.3EG 5.3fixed in 26.1.1, 24.1.3 or 23.0.3, by version range2024-10-04
vulnerable: 0.0 ... 9.1.7 (85 versions)
In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images to a raw f…
- CVE-2025-44021LOWCVSS 2.8EG 2.8fixed in 24.1.3, 26.1.1 or 29.0.1, by version range2025-05-08
vulnerable: 0.0 ... 9.1.7 (91 versions)
OpenStack Ironic before 29.0.1 can write unintended files to a target node disk during image handling (if a deployment was performed via the API). A malicious project assigned as a node owner can provide a path to any local file (readable …
- CVE-2026-42510HIGHCVSS 7.2EG 7.2fixed in 35.0.12026-04-28
vulnerable: 0.0 ... 9.1.7 (113 versions)
OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.
- CVE-2026-44919MEDIUMCVSS 6.5EG 6.52026-05-14
vulnerable: 0.0 ... 9.1.7 (115 versions)
In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///dev/zero URL.
- CVE-2026-46447HIGHCVSS 7.7EG 7.7fixed in 26.1.7, 29.0.6, 32.0.2 or 35.0.2, by version range2026-06-03
vulnerable: 17.0.0 ... 35.0.1 (71 versions)
OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info.
- CVE-2026-48681HIGHCVSS 8.1EG 8.1fixed in 26.1.7, 29.0.6, 32.0.2 or 35.0.2, by version range2026-06-04
vulnerable: 17.0.0 ... 35.0.1 (71 versions)
OpenStack Ironic through before 35.0.2 allows file overwrite via directory traversal during deployment with a crafted ISO image.
- CVE-2026-50589HIGHCVSS 7.5EG 7.5fixed in 37.0.02026-06-04
vulnerable: 32.0.0 ... 36.0.0 (7 versions)
In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC service and effect a service crash.
- CVE-2026-54421MEDIUMCVSS 6.8EG 6.8fixed in 29.0.6, 32.0.2, 35.0.2 or 37.0.1, by version range2026-06-14
vulnerable: 17.0.0 ... 37.0.0 (73 versions)
In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issu…
Check whether ironic is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for ironic CVEs against the assets you own.
Book a Demo →