OpenStack Skyline before 5.0.1, 6.0.0, and 7.0.0 has a DOM-based Cross-Site Scripting (XSS) vulnerability in the console because document.write is used unsafely, which is relevant in scenarios where administrators use the console web interface to view instance console logs.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-04-10 08:16
Updated : 2026-06-17 10:44
NVD link : CVE-2026-40212
Mitre link : CVE-2026-40212
CVE.ORG link : CVE-2026-40212
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
