OpenStack Glance Store VMware Datastore Driver Vulnerability
CVE-2026-51773
8.1HIGH
What is CVE-2026-51773?
The vulnerability in the VMware datastore driver of OpenStack Glance Store arises when an authenticated attacker can leverage a maliciously crafted image location URI that points to an external server. The flaw exists in the _retry_request function, which fails to adequately verify whether the destination host is legitimate before appending sensitive authentication headers. This oversight can expose sensitive credentials and lead to unauthorized access, posing a serious risk to system integrity.
