CVE-2025-65073 describes a critical authorization bypass vulnerability in OpenStack Keystone versions prior to 26.0.1, 27.0.0, and 28.0.0. An attacker can leverage a valid AWS Signature within a /v3/ec2tokens or /v3/s3tokens request to gain unauthorized access to Keystone. This vulnerability carries a high CVSS score of 7.5, indicating a network-based attack with high impact on integrity and low impact on confidentiality, but with high attack complexity. Despite its severity, there is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, < 26.0.1CPE match | cpe:2.3:a:openstack:keystone:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
OpenStack Keystone allows /v3/ec2tokens or /v3/s3tokens request with valid AWS Signature to provide Keystone authorization.
Nov 17, 2025openstack-keystone: OpenStack Keystone: Unauthorized access and privilege escalation via AWS signature validation flaw
Nov 17, 2025