A vulnerability has been found in OpenStack Ironic up to 26.1.6/29.0.5/32.0.1/35.0.1 and classified as problematic. This impacts an unknown function of the component ISO Image Handler. This manipulation causes relative path traversal.

This vulnerability is registered as CVE-2026-48681. Remote exploitation of the attack is possible. No exploit is available.

The affected component should be upgraded.