Vulnerabilities > Keystone

DATE CVE VULNERABILITY TITLE RISK
2016-06-13 CVE-2016-4911 Improper Access Control vulnerability in Keystone Openstack Identity 9.0.0.0
The Fernet Token Provider in OpenStack Identity (Keystone) 9.0.x before 9.0.1 (mitaka) allows remote authenticated users to prevent revocation of a chain of tokens and bypass intended access restrictions by rescoping a token.
network
low complexity
keystone CWE-284
4.0