📦 Cloudstack

by Apache

🔍 What is Cloudstack?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-38346

CRITICAL CVSS 9.8 Jul 5, 2024

This critical vulnerability in Apache CloudStack allows unauthenticated attackers to execute arbitrary commands on hypervisors and management servers via the cluster service port (default 9090). It af...

CVE-2024-29006

CRITICAL CVSS 9.8 Apr 4, 2024

This vulnerability allows attackers to spoof their IP address using the x-forwarded-for HTTP header, potentially bypassing authentication in CloudStack management servers. All CloudStack deployments u...

CVE-2022-35741

CRITICAL CVSS 9.8 Jul 18, 2022

Apache CloudStack versions 4.5.0 and later contain an XML external entity (XXE) injection vulnerability in the SAML 2.0 authentication plugin. This vulnerability could allow attackers to read arbitrar...

CVE-2025-47713

HIGH CVSS 8.8 Jun 10, 2025

A privilege escalation vulnerability in Apache CloudStack allows malicious Domain Admin users in the ROOT domain to reset passwords of Admin role accounts. This enables attackers to impersonate higher...

CVE-2025-26521

HIGH CVSS 8.1 Jun 10, 2025

This vulnerability in Apache CloudStack allows project members with access to CKS-based Kubernetes clusters to steal the API and secret keys of the cluster creator's 'kubeadmin' account. Attackers can...

CVE-2024-50386

HIGH CVSS 8.5 Nov 12, 2024

This vulnerability in Apache CloudStack allows attackers who can register templates to deploy malicious instances on KVM-based environments, potentially gaining access to host filesystems. This affect...

CVE-2024-45693

HIGH CVSS 8.0 Oct 16, 2024

Apache CloudStack has a Cross-Site Request Forgery (CSRF) vulnerability that allows attackers to trick authenticated users into performing unauthorized actions. This can lead to privilege escalation, ...

CVE-2024-45219

HIGH CVSS 8.5 Oct 16, 2024

Apache CloudStack has a vulnerability where users can upload malicious KVM-compatible templates or volumes that bypass validation checks. This allows attackers to gain access to host filesystems, comp...

CVE-2024-42062

HIGH CVSS 7.2 Aug 7, 2024

A privilege escalation vulnerability in Apache CloudStack allows domain admin accounts to query API and secret keys of all account-users, including root admin. This enables attackers with domain admin...

CVE-2024-41107

HIGH CVSS 8.1 Jul 19, 2024

CVE-2024-41107 is an authentication bypass vulnerability in Apache CloudStack's SAML authentication feature. When SAML authentication is enabled, attackers can spoof SAML responses without valid signa...

CVE-2022-26779

HIGH CVSS 7.5 Mar 15, 2022

Apache CloudStack prior to 4.16.1.0 uses insecure random number generation for project invitation tokens, allowing attackers with knowledge of project IDs to brute-force invitation tokens and potentia...

CVE-2025-59302

MEDIUM CVSS 4.7 Nov 27, 2025

Apache CloudStack contains a code injection vulnerability in six administrative APIs that allows authenticated administrators to execute arbitrary JavaScript code. This affects CloudStack versions 4.1...

CVE-2025-59454

MEDIUM CVSS 4.3 Nov 27, 2025

This CVE describes an information disclosure vulnerability in Apache CloudStack where authorized users could occasionally access data beyond their intended permissions through specific APIs. The vulne...

CVE-2025-30675

MEDIUM CVSS 4.7 Jun 11, 2025

This vulnerability allows malicious Domain Admins or Resource Admins in Apache CloudStack to bypass domain isolation by exploiting flawed access control in listTemplates and listIsos APIs. By specifyi...

CVE-2025-22828

MEDIUM CVSS 4.3 Jan 13, 2025

Apache CloudStack versions from 4.16.0 have an access validation flaw that allows authenticated users with knowledge of resource UUIDs to read or add comments (annotations) on those resources. This co...

CVE-2024-45462

MEDIUM CVSS 6.3 Oct 16, 2024

This CVE describes a session expiration vulnerability in Apache CloudStack's web interface where logout doesn't properly invalidate user sessions. An attacker with access to a user's browser can reuse...