CVE-2026-54422

Basic Information

Severity MEDIUM
Base Score 5.5
CNA mitre
Published Date 2026-07-23 23:42:26 UTC
Last Modified 2026-07-23 23:42:26 UTC
CVE.org Link https://www.cve.org/CVERecord?id=CVE-2026-54422
NVD https://nvd.nist.gov/vuln/detail/CVE-2026-54422

Description

In OpenStack Ironic Python Agent through 11.5.0, a malicious bootc container, when deployed using ironic-python-agent, may be able to extract the credentials used to download it.

Affected Products

Vendor Product
openstack ironic python agent