Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-65073

24
FAUCET Score

CVE-2025-65073 describes a critical authorization bypass vulnerability in OpenStack Keystone versions prior to 26.0.1, 27.0.0, and 28.0.0. An attacker can leverage a valid AWS Signature within a /v3/ec2tokens or /v3/s3tokens request to gain unauthorized access to Keystone. This vulnerability carries a high CVSS score of 7.5, indicating a network-based attack with high impact on integrity and low impact on confidentiality, but with high attack complexity. Despite its severity, there is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 0, < 26.0.1CPE match
cpe:2.3:a:openstack:keystone:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:N

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
LOW
Integrity Impact
HIGH
Availability Impact
NONE
Exploitability Score
2.2
Impact Score
4.7
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.22%
Probability of exploitation in next 30 days
EPSS Percentile
12.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.0022 is in the 1st percentile among its peer group of 8,913 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (10)

pippatch availablevia ghsa
Product: keystoneFixed in: 26.0.1
pippatch availablevia ghsa
Product: keystoneFixed in: 27.0.0
pippatch availablevia ghsa
Product: keystoneFixed in: 28.0.0
redhatpatch availablevia redhat_api
Product: Red Hat OpenStack Services on OpenShift 18.0Fixed in: openstack-keystone-1:23.0.3-18.0.20241202141842.9e3dfb4.el9ost
View patch
redhatno patchvia redhat_api
Product: Red Hat OpenStack Platform 13 (Queens)Fixed in: rhosp13/openstack-keystone
redhatno patchvia redhat_api
Product: Red Hat OpenStack Platform 16.2Fixed in: openstack-keystone
redhatno patchvia redhat_api
Product: Red Hat OpenStack Platform 16.2Fixed in: rhosp-rhel8/openstack-keystone
redhatno patchvia redhat_api
Product: Red Hat OpenStack Platform 17.1Fixed in: openstack-keystone
redhatno patchvia redhat_api
Product: Red Hat OpenStack Platform 17.1Fixed in: rhosp-rhel9/openstack-keystone
redhatno patchvia redhat_api
Product: Red Hat OpenStack Platform 18.0Fixed in: rhoso/openstack-keystone-rhel9

Vendor Advisories (2)

pipGHSA-hcqg-5g63-7j9hhigh

OpenStack Keystone allows /v3/ec2tokens or /v3/s3tokens request with valid AWS Signature to provide Keystone authorization.

Nov 17, 2025
redhatCVE-2025-65073Important

openstack-keystone: OpenStack Keystone: Unauthorized access and privilege escalation via AWS signature validation flaw

Nov 17, 2025

References

openwall.com / lists/oss-security/2025/11/17/6
openwall.com / lists/oss-security/2025/11/04/2