A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.
A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.