{"id":"CVE-2023-6110","aliases":["GHSA-2ppf-2m6f-6v6f","PYSEC-2026-1853"],"url":"https://o3.security/vulnerability/CVE-2023-6110","summary":" OpenStack improperly deletes access rules","details":"A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.","published":"2024-11-17T11:15:06Z","modified":"2026-07-07T17:56:20.517694498Z","cvss":{"score":5.5,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"python-openstackclient","fixedVersion":"6.3.0"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:2737"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:2769"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2212960"},{"type":"WEB","url":"https://access.redhat.com/security/cve/CVE-2023-6110"},{"type":"WEB","url":"https://code.engineering.redhat.com/gerrit/gitweb?p=python-openstackclient.git;a=commit;h=7a7c364bdd7b2cd2b56e73724110710a68d58abf"},{"type":"WEB","url":"https://review.opendev.org/c/openstack/python-openstackclient/+/888697"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-07T17:56:20.517694498Z"}}