What is CVE-2026-71191?
This vulnerability in OpenStack Swift versions through 2.38.0 allows an attacker with a presigned PUT URL to inject an unsigned X-Amz-Copy-Source header, bypassing S3API middleware's SigV4 signature enforcement. This can lead to unauthorized server-side copy operations. Users should upgrade to the latest version to mitigate the issue.
Azərbaycanca: Bu boşluq OpenStack Swift-in 2.38.0 versiyasına qədər olan versiyalarında S3API middleware-də aşkarlanıb və əvvəlcədən imzalanmış (presigned) PUT sorğularında "x-amz-copy-source" başlığının SigV4 imzası ilə qorunmamasına səbəb olur. Təcavüzkar presigned URL əldə etdikdə bu başlığı manipulyasiya edərək server tərəfli surət çıxarma (server-side copy) əməliyyatı apara bilər. Bu problemi aradan qaldırmaq üçün OpenStack Swift-i ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-863; shared vendor: OpenStack
FAQ2
What versions of OpenStack Swift are affected by CVE-2026-71191?
CVE-2026-71191 affects OpenStack Swift versions through 2.38.0.
How can an attacker exploit CVE-2026-71191?
Upon obtaining a presigned URL, an attacker can manipulate the "x-amz-copy-source" header because it is not protected by the SigV4 signature in the S3API middleware, allowing them to perform unauthorized server-side copy operations.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.