CVE-2026-48681: OpenStack Ironic allows file overwrite via directory traversal during deployment with a crafted ISO image
(updated )
OpenStack Ironic through before 35.0.2 allows file overwrite via directory traversal during deployment with a crafted ISO image.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-48681 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →