Known Vulnerabilities for Heat by Openstack
Listed below are 6 of the newest known vulnerabilities associated with "Heat" by "Openstack".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-1625 json | An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'sta... | 5 - MEDIUM | 2023-09-24 | 2023-11-07 |
| CVE-2017-2621 json | An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service ... | 5.5 - MEDIUM | 2018-07-27 | 2023-02-12 |
| CVE-2016-9185 json | In OpenStack Heat, by launching a new Heat stack with a local URL an authenticated user may conduct network discovery reveali... | 4.3 - MEDIUM | 2016-11-04 | 2018-01-05 |
| CVE-2014-3801 json | OpenStack Orchestration API (Heat) 2013.2 through 2013.2.3 and 2014.1, when creating the stack for a template using a provide... | 3.5 - LOW | 2014-05-23 | 2017-12-29 |
| CVE-2013-6428 json | The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote authen... | 4 - MEDIUM | 2013-12-14 | 2014-03-06 |
| CVE-2013-6426 json | The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2... | 4 - MEDIUM | 2013-12-14 | 2017-08-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Openstack | Heat | 5.0.0 | |||
| Application | Openstack | Heat | 2015.2 | |||
| Application | Openstack | Heat | 2014.1 | |||
| Application | Openstack | Heat | 2013.2.3 | |||
| Application | Openstack | Heat | 2013.2.2 | |||
| Application | Openstack | Heat | 2013.2.1 | |||
| Application | Openstack | Heat | 2013.2 |