Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2025-65073
CVE-2025-65073
OpenStack Keystone before 26.0.1, 27.0.0, and 28.0.0 allows a /v3/ec2tokens or /v3/s3tokens request with a valid AWS Signature to provide Keystone authorization.
Published Nov 18, 2025
https://github.com/advisories/GHSA-hcqg-5g63-7j9h
CVSS Score
High
8.3
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
@humba01/wertsfy
1.0.2
npm
@netzreich/openstack-clients
1.0.3
npm
@netzreich/openstack-clients
1.0.4
npm
@netzreich/openstack-clients
1.0.5
pypi
keystone
15.0.0.0rc1
pypi
keystone
15.0.0.0rc2
pypi
keystone
15.0.0
pypi
keystone
15.0.1
pypi
keystone
16.0.0.0rc1
pypi
keystone
16.0.0.0rc2
pypi
keystone
16.0.0
pypi
keystone
16.0.1
pypi
keystone
16.0.2
pypi
keystone
17.0.0.0rc1
pypi
keystone
17.0.0.0rc2
pypi
keystone
17.0.0
pypi
keystone
17.0.1
pypi
keystone
18.0.0.0rc1
pypi
keystone
18.0.0
pypi
keystone
18.1.0
pypi
keystone
19.0.0.0rc1
pypi
keystone
19.0.0.0rc2
pypi
keystone
19.0.0
pypi
keystone
19.0.1
pypi
keystone
20.0.0.0rc1
pypi
keystone
20.0.0
pypi
keystone
20.0.1
pypi
keystone
21.0.0.0rc1
pypi
keystone
21.0.0
pypi
keystone
21.0.1
pypi
keystone
22.0.0.0rc1
pypi
keystone
22.0.0
pypi
keystone
22.0.1
pypi
keystone
22.0.2
pypi
keystone
23.0.0.0rc1
pypi
keystone
23.0.0
pypi
keystone
23.0.1
pypi
keystone
23.0.2
pypi
keystone
24.0.0.0rc1
pypi
keystone
24.0.0
pypi
keystone
24.1.0
pypi
keystone
25.0.0.0rc1
pypi
keystone
25.0.0
pypi
keystone
26.0.0.0rc1
pypi
keystone
26.0.0
pypi
keystone
26.1.0
pypi
keystone
27.0.0.0rc1
pypi
keystone
27.0.0
pypi
keystone
28.0.0.0rc1
pypi
keystone
28.0.0
1-50 of 60
CVE-2025-65073 | Components Impacted | Sonatype Guide | Sonatype Guide