cbcvebase.

Apache Software Foundation Apache Cloudstack vulnerabilities

51 known vulnerabilities affecting apache_software_foundation/apache_cloudstack.

Total CVEs
51
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH25MEDIUM15LOW1

Vulnerabilities

Page 3 of 3
CVE-2025-30675P4MEDIUMCVSS 4.7≥ 4.0.0, < 4.19.3.0≥ 4.20.0.0, < 4.20.1.02025-06-11
CVE-2025-30675 [MEDIUM] CWE-200 CVE-2025-30675: In Apache CloudStack, a flaw in access control affects the listTemplates and listIsos APIs. A malici In Apache CloudStack, a flaw in access control affects the listTemplates and listIsos APIs. A malicious Domain Admin or Resource Admin can exploit this issue by intentionally specifying the 'domainid' parameter along with the 'filter=self' or 'filter=selfexecutable' values. This allows the attacker to gain unauthorized visibility into templates and
nvd
CVE-2025-22828P4MEDIUMCVSS 4.3≥ 4.16.0, ≤ *2025-01-13
CVE-2025-22828 [MEDIUM] CWE-200 CVE-2025-22828: CloudStack users can add and read comments (annotations) on resources they are authorised to access. CloudStack users can add and read comments (annotations) on resources they are authorised to access. Due to an access validation issue that affects Apache CloudStack versions from 4.16.0, users who have access, prior access or knowledge of resource UUIDs can list and add comments (annotations) to such resources. An attacker with a user-account and
nvd
CVE-2025-59302P4MEDIUMCVSS 4.7≥ 4.18.0, < 4.20.2≥ 4.21.0, < 4.22.02025-11-27
CVE-2025-59302 [MEDIUM] CWE-94 CVE-2025-59302: In Apache CloudStack improper control of generation of code ('Code Injection') vulnerability is fou In Apache CloudStack improper control of generation of code ('Code Injection') vulnerability is found in the following APIs which are accessible only to admins. * quotaTariffCreate * quotaTariffUpdate * createSecondaryStorageSelector * updateSecondaryStorageSelector * updateHost * updateStorage This issue affects Apache CloudStack: from 4.18.0 befo
nvd
CVE-2025-22829P4MEDIUMCVSS 4.3≥ 4.20.0.0, < 4.20.1.02025-06-10
CVE-2025-22829 [MEDIUM] CWE-269 CVE-2025-22829: The CloudStack Quota plugin has an improper privilege management logic in version 4.20.0.0. Anyone w The CloudStack Quota plugin has an improper privilege management logic in version 4.20.0.0. Anyone with authenticated user-account access in CloudStack 4.20.0.0 environments, where this plugin is enabled and have access to specific APIs can enable or disable reception of quota-related emails for any account in the environment and list their configur
nvd
CVE-2026-61422P4MEDIUMCVSS 4.3v4.20.3.0≥ 4.21.0.0, ≤ 4.22.1.02026-08-21
CVE-2026-61422 [MEDIUM] CWE-918 CVE-2026-61422: Authenticated pre-validation SSRF vulnerability in Apache CloudStack's template and ISO registration Authenticated pre-validation SSRF vulnerability in Apache CloudStack's template and ISO registration functionality. When registering a template or ISO, CloudStack makes a live HTTP HEAD/GET call to determine file size for secondary storage usage-limit checks, and this happens before URL validation is performed. However, this does not pose a malicio
nvd
CVE-2026-61399P4MEDIUMCVSS 4.8≥ 4.20.0.0, ≤ 4.20.3.0≥ 4.21.0.0, ≤ 4.22.1.02026-08-21
CVE-2026-61399 [MEDIUM] CWE-116 CVE-2026-61399: Improper Encoding or Escaping of Output vulnerability in Apache CloudStack's UI while using Lock Use Improper Encoding or Escaping of Output vulnerability in Apache CloudStack's UI while using Lock User Functionality. This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0. Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the issue.
nvd
CVE-2024-42222P4MEDIUMCVSS 4.3v4.19.1.02024-08-07
CVE-2024-42222 [MEDIUM] CWE-200 CVE-2024-42222: In Apache CloudStack 4.19.1.0, a regression in the network listing API allows unauthorised list acce In Apache CloudStack 4.19.1.0, a regression in the network listing API allows unauthorised list access of network details for domain admin and normal user accounts. This vulnerability compromises tenant isolation, potentially leading to unauthorised access to network details, configurations and data. Affected users are advised to upgrade to version
nvd
CVE-2025-59454P4MEDIUMCVSS 4.3≥ 4.0.0, < 4.20.2≥ 4.21.0, < 4.22.02025-11-27
CVE-2025-59454 [MEDIUM] CWE-200 CVE-2025-59454: In Apache CloudStack, a gap in access control checks affected the APIs - createNetworkACL - listNetw In Apache CloudStack, a gap in access control checks affected the APIs - createNetworkACL - listNetworkACLs - listResourceDetails - listVirtualMachinesUsageHistory - listVolumesUsageHistory While these APIs were accessible only to authorized users, insufficient permission validation meant that users could occasionally access information beyond thei
nvd
CVE-2026-65613P4MEDIUMCVSS 4.3≥ 4.20.0.0, ≤ 4.20.3.0≥ 4.21.0.0, ≤ 4.22.1.02026-08-21
CVE-2026-65613 [MEDIUM] CWE-200 CVE-2026-65613: Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's Webh Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's Webhook module while listing and deleting deliveries. This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0. Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the iss
nvd
CVE-2013-4317P4MEDIUMCVSS 4.3v4.1.0, 4.1.12018-02-06
CVE-2013-4317 [MEDIUM] CWE-200 CVE-2013-4317: In Apache CloudStack 4.1.0 and 4.1.1, when calling the CloudStack API call listProjectAccounts as a In Apache CloudStack 4.1.0 and 4.1.1, when calling the CloudStack API call listProjectAccounts as a regular, non-administrative user, the user is able to see information for accounts other than their own.
nvd
CVE-2026-66721P4LOWCVSS 2.7≥ 4.12.0.0, ≤ 4.20.3.0≥ 4.21.0.0, ≤ 4.22.1.02026-08-21
CVE-2026-66721 [LOW] CWE-862 CVE-2026-66721: Missing authorization issue for domain admins in CloudStack's host tags listing functionality. D Missing authorization issue for domain admins in CloudStack's host tags listing functionality. Domain Admins, by default, have permission to call the listHostTags API, but the API returns host tags for every host in the environment without domain scoping. It should instead be restricted to only the hosts dedicated to that admin's domain. This issue aff
nvd
Apache Software Foundation Apache Cloudstack vulnerabilities | cvebase