OpenStack CVE-2026-22797 Privilege Escalation via Identity Headers in External OAuth2 Tokens
Hi yaook users, today OpenStack published a CVE for a keystone middleware external_oauth2_token. As you can't activate this middleware with yaook currently, we are not affected. https://yaook.cloud/security-advisories-cve-2026-22797/ Best regards, Stefan -- Stefan Hoffmann DevOps-Engineer Cloud&Heat Cloud&Heat Technologies GmbH Königsbrücker Straße 96 (Halle 15) | 01099 Dresden +49 351 479 367 36 stefan.hoffmann@cloudandheat.com | www.cloudandheat.com Green, Open, Efficient. Ihr Cloud-Service- und Cloud-Technologie-Provider aus Dresden. [1] Commercial Register: District Court Dresden Register Number: HRB 30549 VAT ID No.: DE281093504 Managing Director: Nicolas Röhrs Authorized signatory: Dr. Marius Feldmann [1] Ihr Cloud-Service- und Cloud-Technologie-Provider aus Dresden. https://www.cloudandheat.com/
participants (1)
-
Stefan Hoffmann