Remote Code Execution Vulnerability in OpenStack Mistral API
CVE-2026-41283
9.9CRITICAL
What is CVE-2026-41283?
The vulnerability in OpenStack Mistral allows for arbitrary remote code execution when exposed via its API. Attackers can exploit certain endpoints that permit code execution, resulting in the potential exfiltration of sensitive service credentials. Proper measures should be implemented to secure the API endpoints to mitigate this risk.
Affected Version(s)
Mistral 20.0.0 < 20.1.1
Mistral 21.0.0
Mistral 22.0.0
