openstack_platform_13_queens vulnerabilities
CVEs whose affected-version data names the openstack_platform_13_queens package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-54770Medium· 6.1WebOb provides objects for HTTP requests and responses
WebOb provides objects for HTTP requests and responses. Prior to 1.8.11, Response._make_location_absolute() in src/webob/response.py checks a Location value for a URI scheme or leading double slash before urllib.parse.urljoin() strips le…
▾ SunlitRed Hat · Red Hat OpenStack Platform 16.2EPSS 0.34%via NVD
CVE-2026-40683High· 7.7OpenStack Keystone: OpenStack Keystone: Unauthorized access due to incorrect LDAP user status handling (CVE-2026-40683)
A flaw was found in OpenStack Keystone. When using the LDAP identity backend, the system incorrectly processes the user enabled attribute if the user_enabled_invert configuration option is set to False. This error causes users marked as di…
▾ TwilightRed Hat · Red Hat OpenStack Platform 13 (Queens)EPSS 0.34%via CSAF