CVE detail
CVE-2026-40214
In OpenStack Cyborg before 16.0.1, the Accelerator Request (ARQ) API does not enforce project ownership at any layer. The project_id column in the database is never populated (NULL for every ARQ), database queries have no project filtering, and policy checks are self-referential (the authorize_wsgi decorator compares the caller's project_id with itself rather than the target resource). Any authenticated non-admin user can complete various actions such as deleting ARQs bound to other projects' instances, aka cross-tenant denial of service.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 13.9 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
3 source links · newest first
- https://www.openwall.com/lists/oss-security/2026/05/07/6www.openwall.com
No excerpt available.
Exploitwww.openwall.comMay 7, 2026, 10:16 PM - https://security.openstack.org/ossa/OSSA-2026-011.htmlsecurity.openstack.org
No excerpt available.
Vendor Advisorysecurity.openstack.orgMay 7, 2026, 10:16 PM - https://bugs.launchpad.net/openstack-cyborg/+bug/2144056bugs.launchpad.net
No excerpt available.
Exploitbugs.launchpad.netMay 7, 2026, 10:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-50130CVSS 8.8 · High
Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From 6.0 to 6.4.2, a user with code execution as the unprivilege…
- CVE-2026-3867CVSS 6.0 · Medium
An improper ownership management vulnerability has been identified in Moxa’s Secure Router. Because of improper ownership management, a low-privileged authenticated user may acces…
- CVE-2026-23514CVSS 8.8 · High
Kiteworks is a private data network (PDN). Versions 9.2.0 and 9.2.1 of Kiteworks Core have an access control vulnerability that allows authenticated users to access unauthorized c…
- CVE-2025-67642CVSS 4.3 · Medium
Jenkins HashiCorp Vault Plugin 371.v884a_4dd60fb_6 and earlier does not set the appropriate context for Vault credentials lookup, allowing attackers with Item/Configure permission…
- CVE-2025-57732CVSS 7.5 · High
In JetBrains TeamCity before 2025.07.1 privilege escalation was possible due to incorrect directory ownership
- CVE-2025-1112CVSS 4.3 · Medium
IBM OpenPages with Watson 8.3 and 9.0 could allow an authenticated user to obtain sensitive information that should only be available to privileged users.