{"id":"CVE-2022-47951","aliases":["GHSA-7h75-hwxx-qpgc","PYSEC-2026-2411","PYSEC-2026-2490","PYSEC-2026-868"],"url":"https://o3.security/vulnerability/CVE-2022-47951","summary":"OpenStack Cinder, glance, and Nova vulnerable to Path Traversal","details":"An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.","published":"2023-01-26T00:00:00Z","modified":"2026-08-13T03:51:47.469341832Z","cvss":{"score":5.7,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"PyPI","name":"cinder","fixedVersion":"19.1.2"},{"ecosystem":"PyPI","name":"cinder","fixedVersion":"20.0.2"},{"ecosystem":"PyPI","name":"glance","fixedVersion":"23.0.1"},{"ecosystem":"PyPI","name":"glance","fixedVersion":"24.1.1"},{"ecosystem":"PyPI","name":"nova","fixedVersion":"24.1.2"},{"ecosystem":"PyPI","name":"nova","fixedVersion":"25.0.2"}],"fix":null,"references":[{"type":"WEB","url":"https://launchpad.net/bugs/1996188"},{"type":"WEB","url":"https://security.openstack.org/ossa/OSSA-2023-002.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/47xxx/CVE-2022-47951.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-47951"},{"type":"ADVISORY","url":"https://www.debian.org/security/2023/dsa-5336"},{"type":"ADVISORY","url":"https://www.debian.org/security/2023/dsa-5337"},{"type":"ADVISORY","url":"https://www.debian.org/security/2023/dsa-5338"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2023/01/msg00040.html"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2023/01/msg00041.html"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2023/01/msg00042.html"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-13T03:51:47.469341832Z"}}