Bug 2147389 (CVE-2022-4133) - CVE-2022-4133 openstack-horizon: reflected XSS
Summary: CVE-2022-4133 openstack-horizon: reflected XSS
Keywords:
Status: CLOSED NOTABUG
Alias: CVE-2022-4133
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2147390 2147391 2147392 2147393 2147394 2147395 2147396 2147397 2147398 2147399 2147400 2147401 2147402 2147403 2147404 2147405 2147406 2147407 2147408 2147409 2147410 2147411 2147412 2147413 2147414 2147415 2147416 2147417 2147418 2147419 2147420 2147421 2147422 2147423 2147424 2147425 2147426 2147427 2147428 2147429 2147430 2147431 2147432 2147433 2147434 2147435 2147436 2147437 2147438 2147439
Blocks: 2134220
TreeView+ depends on / blocked
 
Reported: 2022-11-23 21:28 UTC by Anten Skrabec
Modified: 2023-02-10 21:39 UTC (History)
20 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2023-02-08 11:15:36 UTC
Embargoed:


Attachments (Terms of Use)

Description Anten Skrabec 2022-11-23 21:28:18 UTC
A reflected Cross Site Scripting vulnerbility was found to exist in the Red Hat OpenStack Platform dashboard that could allow an attacker to trick a victim pasting malicious code in the “Allocation Pools” instance.

Comment 1 Anten Skrabec 2022-11-23 21:41:42 UTC
Created openstack-cloudkitty-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147390]


Created openstack-designate-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147391]


Created openstack-heat-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147392]


Created openstack-magnum-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147393]


Created openstack-manila-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147394]


Created openstack-mistral-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147395]


Created openstack-murano-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147396]


Created openstack-octavia-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147397]


Created openstack-sahara-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147398]


Created openstack-trove-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147399]


Created openstack-vitrage-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147400]


Created puppet-horizon tracking bugs for this issue:

Affects: openstack-rdo [bug 2147401]


Created python-django-horizon tracking bugs for this issue:

Affects: openstack-rdo [bug 2147402]


Created python-networking-bgpvpn tracking bugs for this issue:

Affects: openstack-rdo [bug 2147403]

Comment 2 Anten Skrabec 2022-11-23 21:43:52 UTC
Created openstack-cloudkitty-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147426]


Created openstack-designate-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147427]


Created openstack-heat-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147428]


Created openstack-magnum-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147429]


Created openstack-manila-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147430]


Created openstack-mistral-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147431]


Created openstack-murano-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147432]


Created openstack-octavia-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147433]


Created openstack-sahara-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147434]


Created openstack-trove-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147435]


Created openstack-vitrage-ui tracking bugs for this issue:

Affects: openstack-rdo [bug 2147436]


Created puppet-horizon tracking bugs for this issue:

Affects: openstack-rdo [bug 2147437]


Created python-django-horizon tracking bugs for this issue:

Affects: openstack-rdo [bug 2147438]


Created python-networking-bgpvpn tracking bugs for this issue:

Affects: openstack-rdo [bug 2147439]


Note You need to log in before you can comment on or make changes to this bug.