OpenStack Glance before 29.1.1, 30.x before 30.1.1, and 31.0.0 is affected by Server-Side Request Forgery (SSRF). By use of HTTP redirects, an authenticated user can bypass URL validation checks and redirect to internal services. Only glance image import functionality is affected. In particular, the web-download and glance-download import methods are subject to this vulnerability, as is the optional (not enabled by default) ovf_process image import plugin.
History

Mon, 06 Apr 2026 13:00:00 +0000

Type Values Removed Values Added
Title OpenStack Glance: OpenStack Glance: Server-Side Request Forgery via HTTP redirects in image import
References
Metrics threat_severity

None

threat_severity

Moderate


Fri, 03 Apr 2026 10:15:00 +0000

Type Values Removed Values Added
Title OpenStack Glance SSRF via HTTP Redirects in Image Import

Thu, 02 Apr 2026 20:30:00 +0000

Type Values Removed Values Added
Description OpenStack Glance <29.1.1, >=30.0.0 <30.1.1, ==31.0.0 is affected by Server-Side Request Forgery (SSRF). By use of HTTP redirects, an authenticated user can bypass URL validation checks and redirect to internal services. Only glance image import functionality is affected. In particular, the web-download and glance-download import methods are subject to this vulnerability, as is the optional (not enabled by default) ovf_process image import plugin. OpenStack Glance before 29.1.1, 30.x before 30.1.1, and 31.0.0 is affected by Server-Side Request Forgery (SSRF). By use of HTTP redirects, an authenticated user can bypass URL validation checks and redirect to internal services. Only glance image import functionality is affected. In particular, the web-download and glance-download import methods are subject to this vulnerability, as is the optional (not enabled by default) ovf_process image import plugin.
CPEs cpe:2.3:a:openstack:glance:*:*:*:*:*:*:*:*

Wed, 01 Apr 2026 02:15:00 +0000

Type Values Removed Values Added
Title OpenStack Glance SSRF via HTTP Redirects in Image Import
First Time appeared Openstack
Openstack glance
Vendors & Products Openstack
Openstack glance

Tue, 31 Mar 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 31 Mar 2026 06:00:00 +0000

Type Values Removed Values Added
Description OpenStack Glance <29.1.1, >=30.0.0 <30.1.1, ==31.0.0 is affected by Server-Side Request Forgery (SSRF). By use of HTTP redirects, an authenticated user can bypass URL validation checks and redirect to internal services. Only glance image import functionality is affected. In particular, the web-download and glance-download import methods are subject to this vulnerability, as is the optional (not enabled by default) ovf_process image import plugin.
Weaknesses CWE-918
References
Metrics cvssV3_1

{'score': 5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2026-03-31T05:29:08.449Z

Updated: 2026-04-02T18:20:21.022Z

Reserved: 2026-03-31T05:29:07.975Z

Link: CVE-2026-34881

cve-icon Vulnrichment

Updated: 2026-03-31T13:47:25.950Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-03-31T06:16:01.130

Modified: 2026-04-02T19:21:35.123

Link: CVE-2026-34881

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-03-31T05:29:08Z

Links: CVE-2026-34881 - Bugzilla