CVE-2026-54422
Basic Information
| Severity | MEDIUM |
|---|---|
| Base Score | 5.5 |
| CNA | mitre |
| Published Date | 2026-07-23 23:42:26 UTC |
| Last Modified | 2026-07-23 23:42:26 UTC |
| CVE.org Link | https://www.cve.org/CVERecord?id=CVE-2026-54422 |
| NVD | https://nvd.nist.gov/vuln/detail/CVE-2026-54422 |
Description
In OpenStack Ironic Python Agent through 11.5.0, a malicious bootc container, when deployed using ironic-python-agent, may be able to extract the credentials used to download it.
Affected Products
| Vendor | Product |
|---|---|
| openstack | ironic python agent |