OpenStack Swift advisory reports cross-container exposure
Advisory OSSA-2026-041, published on September 24, 2026, concerns CVE-2026-97149 and possible information disclosure between containers via Swift tempurl. The supplied description is incomplete.
Advisory OSSA-2026-041 reports a Swift tempurl flaw that may allow information disclosure between containers. Identified as CVE-2026-97149, the issue was published on September 24, 2026. The supplied material says the description is incomplete, so it does not support details about exploitation conditions, impact, or fixes.
The affected-versions section appears in the feed as “>=1.4.6 =2.36.0 =2.37.0 =2.38.0,” an ambiguous notation that should not be treated as a confirmed range. To verify scope and guidance, consult advisory OSSA-2026-041 and the CVE-2026-97149 entry in the original sources, checking the complete, current version information before taking action. If using AI to study the advisory, follow your organization’s data policy and avoid submitting credentials or internal information without protection.