CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2026-41283

Critical · CVSS 9.9
CVSS
9.9
nvd
EPSS
KEV
No
Class
oss containerizable
CWE-863, CWE-749

Description

OpenStack Mistral through 22.0.0 allows Arbitrary Remote Code Execution when the API is exposed. There are endpoints that allow code execution, which can lead to exfiltration of service credentials.

Affected packages

PyPI mistral 20.0.0 → 20.1.1

References

Status: profiled · ingested 2026-07-23T00:00:18.000Z