CVE-2022-3100

MEDIUM5.9EPSS 0.21%

barbican - security update

Published: 1/18/2023Modified: 4/28/2026

Description

A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.9CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N

References (1)