CVE-2026-34881 describes a Server-Side Request Forgery (SSRF) vulnerability in OpenStack Glance versions before 29.1.1, 30.x before 30.1.1, and 31.0.0. An authenticated user can exploit this by using HTTP redirects during image import to bypass URL validation, potentially allowing access to internal services. The vulnerability has a CVSS score of 5.0 (Medium), indicating it can be exploited over the network with low attack complexity and requires low privileges, primarily impacting integrity (I:L). There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or inclusion in CISA's KEV catalog, with minimal community discussion observed.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 29.1.1CPE matchmatch criteria | cpe:2.3:a:openstack:glance:*:*:*:*:*:*:*:* | ||
>= 30.0.0, < 30.1.1CPE matchmatch criteria | cpe:2.3:a:openstack:glance:*:*:*:*:*:*:*:* | ||
31.0.0CPE matchmatch criteria | cpe:2.3:a:openstack:glance:31.0.0:*:*:*:*:*:*:* | ||
>= 0, < 29.1.1CPE match | cpe:2.3:a:openstack:glance:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.