CVE-2026-66138
EUVD-2026-4847624.07.2026, 05:16
In OpenStack Ironic Python Agent through 11.6.0, a project-scoped user with the manager role can achieve arbitrary code execution on a running Ironic-Python-Agent via a maliciously constructed configuration, because the value of ntp_server is passed to a shell.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| openstack | ironic_python_agent | 11.6.0 | CNA |
| openstack | ironic_python_agent | 11.3.0 ≤ 𝑥 ≤ 11.5.1 | CNA |
| openstack | ironic_python_agent | 11.0.0 ≤ 𝑥 ≤ 11.2.1 | CNA |
| openstack | ironic_python_agent | 6.0.0 ≤ 𝑥 ≤ 10.2.3 | CNA |
Debian Releases