CVE-2026-97404

NameCVE-2026-97404
DescriptionIn OpenStack Zaqar before 22.0.2, WSGI transport mishandles the URL-Si ...
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1148897

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
zaqar (PTS)bookworm15.0.0-1vulnerable
trixie20.0.0-2vulnerable
forky23.0.0~rc1-2vulnerable
sid23.0.0~rc1-3fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
zaqarsource(unstable)23.0.0~rc1-31148897

Notes

https://security.openstack.org/ossa/OSSA-2026-042.html

Search for package or bug name: Reporting problems