Description
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-520-1 | horizon security update |
Debian DSA |
DSA-3617-1 | horizon security update |
EUVD |
EUVD-2022-4001 | Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form. |
Github GHSA |
GHSA-grm6-x6mr-q3cv | OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability |
Ubuntu USN |
USN-3447-1 | OpenStack Horizon vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T00:32:24.621Z
Reserved: 2016-05-02T00:00:00.000Z
Link: CVE-2016-4428
No data.
Status : Deferred
Published: 2016-07-12T19:59:03.257
Modified: 2025-04-12T10:46:40.837
Link: CVE-2016-4428
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Github GHSA
Ubuntu USN