CVE-2021-3654
02.03.2022, 23:15
A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.
| Vendor | Product | Version |
|---|---|---|
| openstack | nova | 𝑥 < 21.2.3 |
| openstack | nova | 22.0.0 ≤ 𝑥 < 22.2.3 |
| openstack | nova | 23.0.0 ≤ 𝑥 < 23.0.3 |
| redhat | openstack_platform | 16.1 |
| redhat | openstack_platform | 16.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References