What is CVE-2026-71190?
CVE-2026-71190 is a ReDoS vulnerability in OpenStack Swift through version 2.38.0, affecting the Accept header parser in the proxy server. An unauthenticated remote attacker can send a crafted Accept header to cause exponential CPU consumption. Immediate application of the security update is recommended.
Azərbaycanca: CVE-2026-71190, OpenStack Swift-in 2.38.0 versiyasına qədər təsir edən, proxy server-də Accept başlığı parserində ReDoS zəifliyidir. Təsdiqlənməmiş uzaqdan hücumçu xüsusi hazırlanmış Accept başlığı göndərərək eksponensial CPU istehlakına səbəb ola bilər. Dərhal təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400
FAQ2
Which component of OpenStack Swift is affected by CVE-2026-71190?
CVE-2026-71190 is a ReDoS vulnerability affecting the Accept header parser in the proxy server of OpenStack Swift.
Is authentication required to exploit CVE-2026-71190?
No, this vulnerability can be exploited by an unauthenticated remote attacker by sending a crafted Accept header.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.