CVE-2026-25199
Apache CloudStack vulnerability analysis and mitigation

Overview

CVE-2026-25199 is an authorization bypass vulnerability in the Proxmox extension for Apache CloudStack that allows unauthorized cross-tenant access to virtual machines. The flaw affects Apache CloudStack versions 4.21.0.0 through 4.22.0.0 and was disclosed on May 8, 2026, with a fix released in version 4.22.0.1. The vulnerability was reported by Sander Grendelman and publicly disclosed via the Apache security mailing list and oss-security. It carries a CVSS v3.1 base score of 9.1 (Critical) (Apache Advisory, oss-security).

Technical details

The root cause is improper authorization and insufficient input validation (CWE-200: Exposure of Sensitive Information to an Unauthorized Actor). The Proxmox extension uses a user-editable instance metadata field, proxmox_vmid, to map CloudStack instances to Proxmox virtual machines; however, this field is neither restricted nor validated against tenant ownership. Because Proxmox VM IDs are sequential and predictable integers, a non-privileged attacker can enumerate valid VM IDs belonging to other tenants and modify their own instance's proxmox_vmid setting to point to a target VM. This manipulation causes CloudStack to treat the attacker's API calls as authorized operations against the victim's VM, requiring no authentication beyond a standard tenant account (oss-security, Apache Advisory).

Impact

Successful exploitation grants an attacker full lifecycle control over virtual machines belonging to other tenants, including the ability to start, stop, and destroy those VMs. This constitutes a complete multi-tenant isolation breach in cloud environments, exposing sensitive workloads and data of other customers to unauthorized access and destruction. The confidentiality and integrity impacts are both rated HIGH, as an attacker can access VM state and irreversibly destroy infrastructure across tenant boundaries (oss-security, Apache Advisory).

Exploitation steps

  1. Reconnaissance: Identify a target Apache CloudStack deployment running versions 4.21.0.0–4.22.0.0 with the Proxmox extension enabled. Obtain a legitimate (non-privileged) tenant account on the platform.
  2. Enumerate Proxmox VM IDs: Since Proxmox VM IDs are predictable sequential integers, enumerate potential VM IDs belonging to other tenants by observing your own VM's proxmox_vmid value and incrementing/decrementing to identify neighboring tenant VMs.
  3. Modify the proxmox_vmid setting: Using the CloudStack API or UI, update the proxmox_vmid instance detail on your own instance to reference the target VM ID belonging to another tenant. This field is user-editable and not validated against tenant ownership.
  4. Execute unauthorized operations: Issue CloudStack API commands (e.g., start, stop, destroy VM) against your own instance. Because the proxmox_vmid now maps to the victim's Proxmox VM, these operations are executed against the target tenant's virtual machine, achieving full unauthorized control (oss-security, Apache Advisory).

Indicators of compromise

  • Logs: CloudStack management server logs showing API calls to update proxmox_vmid instance details by non-administrative users; repeated modifications to instance details across different VM IDs from the same account.
  • Logs: Unexpected VM lifecycle events (start/stop/destroy) on Proxmox VMs that do not correspond to actions initiated by the owning tenant, visible in both CloudStack audit logs and Proxmox task logs.
  • Application: CloudStack instance detail records where proxmox_vmid values do not match the originally assigned Proxmox VM ID for that tenant's instance — cross-reference CloudStack instance metadata against Proxmox VM ownership records.
  • Network: Unusual patterns of CloudStack API calls from a single tenant account targeting VM lifecycle operations at high frequency, potentially indicating enumeration of VM IDs (oss-security).

Mitigation and workarounds

The primary remediation is to upgrade Apache CloudStack to version 4.22.0.1, which resolves the improper validation of the proxmox_vmid field. For deployments that cannot immediately upgrade, administrators can prevent users from editing the proxmox_vmid instance detail by adding proxmox_vmid to the global configuration parameter user.vm.denied.details in CloudStack. This workaround effectively blocks the attack vector without requiring an upgrade (Apache Advisory, oss-security).

Community reactions

The vulnerability was credited to reporter Sander Grendelman and disclosed through the Apache security mailing list and oss-security on May 8–9, 2026. ShapeBlue, a major CloudStack integrator, published a security advisory covering the 4.20.3.0 and 4.22.0.1 releases (ShapeBlue Advisory). Social media coverage included posts on Mastodon and Bluesky from infosec community accounts, and SystemTek published a blog post summarizing the vulnerability (SystemTek). Community reaction highlighted the severity of the multi-tenant isolation breach in cloud environments.

Additional resources


SourceThis report was generated using AI

Related Apache CloudStack vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-25199CRITICAL9.1
  • Apache CloudStack logoApache CloudStack
  • cpe:2.3:a:apache:cloudstack
NoYesMay 08, 2026
CVE-2026-25077HIGH8.8
  • Apache CloudStack logoApache CloudStack
  • cpe:2.3:a:apache:cloudstack
NoYesMay 08, 2026
CVE-2025-66467HIGH8.1
  • Apache CloudStack logoApache CloudStack
  • cpe:2.3:a:apache:cloudstack
NoYesMay 08, 2026
CVE-2025-66172HIGH8.1
  • Apache CloudStack logoApache CloudStack
  • cpe:2.3:a:apache:cloudstack
NoYesMay 08, 2026
CVE-2025-69233MEDIUM5.3
  • Apache CloudStack logoApache CloudStack
  • cpe:2.3:a:apache:cloudstack
NoYesMay 08, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management