
OpenStack Vitrage query-parser flaw enables service-host RCE
OpenStack disclosed CVE-2026-28370, a Vitrage query-parser flaw that can let authenticated Vitrage API users execute code on the service host; patches are available.
NewsCloud SecurityOpenStack
1 min03 Mar 2026
