Access Policy Bypass in OpenStack Barbican Component
CVE-2022-3100
5.9MEDIUM
What is CVE-2022-3100?
A security flaw in the OpenStack Barbican component allows an attacker to bypass access policies through specially crafted query strings when accessing the API. This vulnerability can lead to unauthorized access, impacting the overall security posture of applications relying on Barbican for secret management.
Affected Version(s)
Red Hat OpenStack Platform 13.0-17.0