Open Redirect vulnerability in Horizon Web Dashboard 19.4.0 thru 20.1.4 via the success_url parameter.
{ "binaries": [ { "binary_version": "3:13.0.3-0ubuntu2", "binary_name": "openstack-dashboard" }, { "binary_version": "3:13.0.3-0ubuntu2", "binary_name": "openstack-dashboard-ubuntu-theme" }, { "binary_version": "3:13.0.3-0ubuntu2", "binary_name": "python-django-horizon" }, { "binary_version": "3:13.0.3-0ubuntu2", "binary_name": "python-django-openstack-auth" }, { "binary_version": "3:13.0.3-0ubuntu2", "binary_name": "python3-django-openstack-auth" } ], "priority_reason": "Per upstream bug, this is a minor issue" }
{ "binaries": [ { "binary_version": "3:18.3.5-0ubuntu2.3+esm1", "binary_name": "openstack-dashboard" }, { "binary_version": "3:18.3.5-0ubuntu2.3+esm1", "binary_name": "openstack-dashboard-common" }, { "binary_version": "3:18.3.5-0ubuntu2.3+esm1", "binary_name": "openstack-dashboard-ubuntu-theme" }, { "binary_version": "3:18.3.5-0ubuntu2.3+esm1", "binary_name": "python3-django-horizon" }, { "binary_version": "3:18.3.5-0ubuntu2.3+esm1", "binary_name": "python3-django-openstack-auth" } ], "priority_reason": "Per upstream bug, this is a minor issue" }
{ "binaries": [ { "binary_version": "4:22.1.1-0ubuntu1.1", "binary_name": "openstack-dashboard" }, { "binary_version": "4:22.1.1-0ubuntu1.1", "binary_name": "openstack-dashboard-common" }, { "binary_version": "4:22.1.1-0ubuntu1.1", "binary_name": "openstack-dashboard-ubuntu-theme" }, { "binary_version": "4:22.1.1-0ubuntu1.1", "binary_name": "python3-django-horizon" }, { "binary_version": "4:22.1.1-0ubuntu1.1", "binary_name": "python3-django-openstack-auth" } ], "priority_reason": "Per upstream bug, this is a minor issue" }