Skip to main content

Vendor/product archive

apache / cloudstack CVEs

Beta · best-effort

45 CVEs tagged to apache / cloudstack9 Critical, 13 High, 20 Medium, 3 Low, 0 Unrated.

CVE-2026-25199

Published May 8, 2026

Instances deployed via the Proxmox extension allow unauthorized access to instances belonging to other tenants. This issue affects Apache CloudStack: from 4.21.0.0 through 4.2…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-25077

Published May 8, 2026

Account users are allowed by default to register templates to be downloaded directly to the primary storage for deploying instances using the KVM hypervisor. Due to missing file n…

CVSS 8.8 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2025-69233

Published May 8, 2026

Due to multiple time-of-check time-of-use race conditions in the resource count check and increment logic, as well as missing validations, users of the platform are able to exceed…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66467

Published May 8, 2026

Missing MinIO policy cleanup on bucket deletion via Apache CloudStack allows users to retain access to buckets which they previously owned. If another user creates a new bucket wi…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66172

Published May 8, 2026

The CloudStack Backup plugin has an improper access logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0.0+ environments, wh…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66171

Published May 8, 2026

The CloudStack Backup plugin has an improper access logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0.0+ environments, wh…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66170

Published May 8, 2026

The CloudStack Backup plugin has an improper authorization logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0.0+ environme…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-59454

Published Nov 27, 2025

In Apache CloudStack, a gap in access control checks affected the APIs - createNetworkACL - listNetworkACLs - listResourceDetails - listVirtualMachinesUsageHistory - listVolumesUs…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-59302

Published Nov 27, 2025

In Apache CloudStack improper control of generation of code ('Code Injection') vulnerability is found in the following APIs which are accessible only to admins. * quotaTariff…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-30675

Published Jun 11, 2025

In Apache CloudStack, a flaw in access control affects the listTemplates and listIsos APIs. A malicious Domain Admin or Resource Admin can exploit this issue by intentionally spec…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-47849

Published Jun 10, 2025

A privilege escalation vulnerability exists in Apache CloudStack versions 4.10.0.0 through 4.20.0.0 where a malicious Domain Admin user in the ROOT domain can get the API key and…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-47713

Published Jun 10, 2025

A privilege escalation vulnerability exists in Apache CloudStack versions 4.10.0.0 through 4.20.0.0 where a malicious Domain Admin user in the ROOT domain can reset the password o…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-26521

Published Jun 10, 2025

When an Apache CloudStack user-account creates a CKS-based Kubernetes cluster in a project, the API key and the secret key of the 'kubeadmin' user of the caller account are used t…

CVSS 8.1 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2025-22829

Published Jun 10, 2025

The CloudStack Quota plugin has an improper privilege management logic in version 4.20.0.0. Anyone with authenticated user-account access in CloudStack 4.20.0.0 environments, wher…

CVSS 2.3 · Low
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2025-22828

Published Jan 13, 2025

CloudStack users can add and read comments (annotations) on resources they are authorised to access.  Due to an access validation issue that affects Apache CloudStack versions fr…

CVSS 4.3 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2024-50386

Published Nov 12, 2024

Account users in Apache CloudStack by default are allowed to register templates to be downloaded directly to the primary storage for deploying instances. Due to missing validation…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-45693

Published Oct 16, 2024

Users logged into the Apache CloudStack's web interface can be tricked to submit malicious CSRF requests due to missing validation of the origin of the requests. This can allow an…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-45462

Published Oct 16, 2024

The logout operation in the CloudStack web interface does not expire the user session completely which is valid until expiry by time or restart of the backend service. An attacker…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-45461

Published Oct 16, 2024

The CloudStack Quota feature allows cloud administrators to implement a quota or usage limit system for cloud resources, and is disabled by default. In environments where the feat…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-45219

Published Oct 16, 2024

Account users in Apache CloudStack by default are allowed to upload and register templates for deploying instances and volumes for attaching them as data disks to their existing i…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-42222

Published Aug 7, 2024

In Apache CloudStack 4.19.1.0, a regression in the network listing API allows unauthorised list access of network details for domain admin and normal user accounts. This vulnerabi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-42062

Published Aug 7, 2024

CloudStack account-users by default use username and password based authentication for API and UI access. Account-users can generate and register randomised API and secret keys an…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-41107

Published Jul 19, 2024

The CloudStack SAML authentication (disabled by default) does not enforce signature check. In CloudStack environments where SAML authentication is enabled, an attacker that initia…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-39864

Published Jul 5, 2024

The CloudStack integration API service allows running its unauthenticated API server (usually on port 8096 when configured and enabled via integration.api.port global setting) for…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-38346

Published Jul 5, 2024

The CloudStack cluster service runs on unauthenticated port (default 9090) that can be misused to run arbitrary commands on targeted hypervisors and CloudStack management server h…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 45 CVEsPage 1 of 2