# CVE-2026-54423

## Summary

- **CVE ID:** CVE-2026-54423
- **Severity:** HIGH
- **CVSS Score:** 8.2 (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:H)
- **CWE:** CWE-424
- **Published:** Jul 10, 2026
- **Last Modified:** Jul 10, 2026

## Description

In OpenStack Ironic before 37.0.1, an Ironic user with the ability to deploy nodes using the IPMI management interface can maliciously use the send_raw step to send arbitrary IPMI commands to a node, bypassing Ironic's access control.

## Affected Products

- OpenStack — Ironic (22.1.0)
- OpenStack — Ironic (30.0.0)
- OpenStack — Ironic (32.0.0)
- OpenStack — Ironic (36.0.0)

## References

- [CNA](https://bugs.launchpad.net/ironic/+bug/2150458)
- [CNA](https://security.openstack.org/ossa/OSSA-2026-025.html)
- [CVE](http://www.openwall.com/lists/oss-security/2026/07/08/3)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.30%
- **EPSS Percentile:** 22.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._