{"id":"CVE-2017-8761","details":"In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.","aliases":["GHSA-8fxc-qm65-vpxg","PYSEC-2026-751"],"modified":"2026-08-07T14:53:48.335169Z","published":"2021-06-02T14:15:07.753Z","references":[{"type":"REPORT","url":"https://launchpad.net/bugs/1685798"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/openstack/swift","events":[{"introduced":"0"},{"last_affected":"3129a55d4418e0dc4207c2026e7ef8c59704c6a1"},{"introduced":"bf473ddc9d3fcb3a3fe516b5221a588c5b196a1d"},{"last_affected":"11bd6c82ecac8572cf9538a4d92a0361b382f1de"},{"introduced":"408500320be39f3ea38ba3255cf1d8ee87ba3ac8"},{"last_affected":"408500320be39f3ea38ba3255cf1d8ee87ba3ac8"}],"database_specific":{"cpe":["cpe:2.3:a:openstack:swift:*:*:*:*:*:*:*:*","cpe:2.3:a:openstack:swift:2.14.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"0"},{"last_affected":"2.10.1"},{"introduced":"2.11.0"},{"last_affected":"2.13.0"},{"introduced":"2.14.0"},{"last_affected":"2.14.0"}],"source":["CPE_RANGE","CPE_STRING"]}}],"versions":["2.14.0","2.13.0","2.10.1","2.12.0","2.11.0","2.9.0","2.10.0","2.8.0","2.7.0","2.6.0","2.5.0","2.4.0","2.3.0rc1","2.2.2rc1","2.2.2","2.2.1c1","2.2.1.rc1","2.2.1","2.2.0.rc1","2.2.0","2.1.0.rc1","2.1.0","2.0.0.rc1","1.13.1.rc1","1.13.0","1.10.0.rc1","1.10.0","1.9.2","1.8.0.rc1","1.4.6","1.4.5","1.4.2","1.4.1","1.4.0","1.3.0","1.3rc1","1.3gamma1","1.1.0","1.0.2","1.0.1","1.0.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-8761.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"}]}