Where
-Infinity
0

pip/Nova[OSSA-2024-002] OpenStack Nova: Incomplete file access fix and gssion for QCOW2 backing files and VMDK flat descriptors (CVE-2024-40767)

Risk 41
Severity
6.5
First published (updated )

Openstack Cinder[OSSA-2024-001] OpenStack Cinder, Glance, Nova: Arbitrary file access through custom QCOW2 external data (CVE-2024-32498)

Risk 40
Severity
6.5
First published (updated )

Openstack CinderPath Traversal

Risk 34
Severity
5.7
First published (updated )

pip/novaAn issue was discovered in OpenStack Nova before 23.2.2, 24.x before 24.1.2, and 25.x before 25.0.2.…

Risk 18
Severity
3.3
First published (updated )

redhat/novaA vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noV…

Risk 38
Severity
6.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

pip/novaXEE

Risk 72
Severity
8.3
First published (updated )

pip/NovaInfoleak

Risk 18
Severity
3.3
First published (updated )

pip/novaqcow format could expose host filesystem information

Risk 51
Severity
8.6
First published (updated )

Openstack NovaOpenStack Nova 15.x through 15.1.0 and 16.x through 16.0.4 has a vulnerability in the handling of en…

Risk 19
Severity
4
First published (updated )

redhat OpenstackAn issue was discovered in OpenStack Nova 15.x through 15.1.0 and 16.x through 16.1.1. By detaching …

Risk 47
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Openstack NovaBy rebuilding an instance, an authenticated user may be able to circumvent the Filter Scheduler bypa…

Risk 40
Severity
6.5
First published (updated )

Openstack NovaBy rebuilding an instance, an authenticated user may be able to circumvent the Filter Scheduler bypa…

Risk 19
Severity
4
First published (updated )

Openstack NovaAn issue was discovered in exception_wrapper.py in OpenStack Nova. Legacy notification exception con…

Risk 19
Severity
4
First published (updated )

Openstack NovaAn issue was discovered in exception_wrapper.py in OpenStack Nova. Legacy notification exception con…

Risk 90
Severity
9.8
First published (updated )

Openstack CinderThe image parser in OpenStack Cinder 7.0.2 and 8.0.0 through 8.1.1; Glance before 11.0.1 and 12.0.0;…

Risk 44
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Openstack Compute \(nova\)OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows …

Risk 38
Severity
6.8
First published (updated )

Openstack NovaIt was reported that by overwriting an ephemeral or root disk with a malicious image before requesti…

Risk 33
Severity
7
First published (updated )

Openstack NovaInfoleak

Risk 34
Severity
5.3
First published (updated )

Openstack NovaInfoleak

Risk 37
Severity
5.9
First published (updated )

Openstack NovaInfoleak

Risk 19
Severity
3.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Openstack NovaOpenStack Compute (Nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) do not properly …

Risk 26
Severity
5
First published (updated )

Openstack NovaTitle: Nova network security group changes are not applied to running instances Reporter: Sreekumar…

Risk 19
Severity
4
First published (updated )

Openstack NovaIt was reported from upstream that a vulnerability was found in Nova resize state. If an authenticat…

Risk 19
Severity
4
First published (updated )

Openstack NovaOpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properl…

Risk 38
Severity
6.8
First published (updated )

Openstack NovaTitle: Nova instance migration process does not stop when instance is deleted Reporter: George Shukl…

Risk 19
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Openstack NovaOpenStack Compute (nova) 2015.1 through 2015.1.1, 2014.2.3, and earlier does not stop the migration …

Risk 41
Severity
6.8
First published (updated )

Openstack NovaOpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not …

Risk 37
Severity
5.1
First published (updated )

Openstack NovaIt was reported that under certain conditions (when live migrations fails), an attacker can access o…

Risk 5
Severity
1
First published (updated )

Openstack ComputeOpenStack Compute (nova) Icehouse, Juno and Havana when live migration fails allows local users to a…

Risk 29
Severity
4.7
First published (updated )

redhat OpenstackThe VMware driver in OpenStack Compute (Nova) before 2014.1.4 allows remote authenticated users to c…

Risk 22
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203