CVE-2021-4472
Python-mistralclient: mistral-dashboard: local file inclusion through the 'create workbook' feature
The mistral-dashboard plugin for openstack has a local file inclusion vulnerability through the 'Create Workbook' feature that may result in disclosure of arbitrary local files content.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Produtos afetados
Red Hat · Red Hat OpenStack Platform 13 (Queens)Red Hat · Red Hat OpenStack Platform 16.2Red Hat · Red Hat OpenStack Platform 17.1Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://access.redhat.com/security/cve/CVE-2021-4472https://bugs.launchpad.net/horizon/+bug/1931558https://bugzilla.redhat.com/show_bug.cgi?id=2417321https://lists.debian.org/debian-lts-announce/2025/12/msg00002.htmlhttps://lists.debian.org/debian-lts-announce/2025/12/msg00003.htmlhttps://review.opendev.org/c/openstack/mistral-dashboard/+/800952https://review.opendev.org/c/openstack/python-mistralclient/+/800950