blazar-dashboard
Horizon plugin for the Blazar Reservation Service for OpenStack
Activity
- Latest release
- 6d ago
- Total releases
- 41
- Cadence
- ~25 days
- Last 12 months
- 4
Details
- License
- Apache-2.0
- First release
- Jan 26, 2018
| Version | Released | |
|---|---|---|
16.0.0.0rc1
pre
|
16.0.0.0rc1
pre
Dependencies (2)
|
|
15.0.0
major
|
15.0.0
major
Dependencies (2)
|
|
15.0.0.0rc1
pre
|
15.0.0.0rc1
pre
Dependencies (2)
|
|
14.0.0
major
|
14.0.0
major
Dependencies (3)
|
|
14.0.0.0rc1
pre
|
14.0.0.0rc1
pre
Dependencies (3)
|
|
13.0.0
major
|
13.0.0
major
Dependencies (3)
|
|
13.0.0.0rc1
pre
|
13.0.0.0rc1
pre
Dependencies (3)
|
|
10.0.1
patch
|
10.0.1
patch
Dependencies (3)
|
|
12.0.0
major
|
12.0.0
major
Dependencies (3)
|
|
12.0.0.0rc1
pre
|
12.0.0.0rc1
pre
Dependencies (3)
|
|
9.0.1
patch
|
9.0.1
patch
Dependencies (3)
|
|
11.0.0
major
|
11.0.0
major
Dependencies (3)
|
|
11.0.0.0rc1
pre
|
11.0.0.0rc1
pre
Dependencies (3)
|
|
10.0.0
major
|
10.0.0
major
Dependencies (3)
|
|
10.0.0.0rc1
pre
|
10.0.0.0rc1
pre
Dependencies (3)
|
|
9.0.0
major
|
9.0.0
major
Dependencies (3)
|
|
9.0.0.0rc1
pre
|
9.0.0.0rc1
pre
Dependencies (3)
|
|
8.0.0
major
|
8.0.0
major
Dependencies (3)
|
|
8.0.0.0rc1
pre
|
8.0.0.0rc1
pre
Dependencies (3)
|
|
7.0.0
major
|
7.0.0
major
Dependencies (3)
|
|
7.0.0.0rc1
pre
|
7.0.0.0rc1
pre
Dependencies (3)
|
|
6.0.0
major
|
6.0.0
major
Dependencies (3)
|
|
6.0.0.0rc1
pre
|
6.0.0.0rc1
pre
Dependencies (3)
|
|
5.0.0
major
|
5.0.0
major
Dependencies (3)
|
|
5.0.0.0rc1
pre
|
5.0.0.0rc1
pre
Dependencies (3)
|
|
4.0.0
major
|
4.0.0
major
Dependencies (3)
|
|
2.0.1
patch
|
2.0.1
patch
Dependencies (3)
|
|
1.3.1
patch
|
1.3.1
patch
Dependencies (3)
|
|
3.0.1
patch
|
3.0.1
patch
Dependencies (3)
|
|
4.0.0.0rc2
pre
|
4.0.0.0rc2
pre
Dependencies (3)
|
|
4.0.0.0rc1
pre
|
4.0.0.0rc1
pre
Dependencies (3)
|
|
3.0.0
major
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
3.0.0
major
Dependencies (3)
|
|
3.0.0.0rc1
pre
|
3.0.0.0rc1
pre
Dependencies (3)
|
|
2.0.0
major
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
2.0.0
major
Dependencies (3)
|
|
2.0.0.0rc1
pre
|
2.0.0.0rc1
pre
Dependencies (3)
|
|
1.3.0
minor
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
1.3.0
minor
Dependencies (3)
|
|
1.2.0
minor
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
1.2.0
minor
Dependencies (8)
|
|
1.1.0
minor
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
1.1.0
minor
Dependencies (8)
|
|
1.0.1
patch
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
1.0.1
patch
Dependencies (7)
|
|
1.0.0
initial
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
1.0.0
initial
Dependencies (7)
|
|
0
unknown
1 CVE
CVE-2020-26943
GHSA-939m-4xpw-v34v
PYSEC-2020-225
Oct 27, 2020
Arbitrary Code Execution in blazar-dashboard
Medium
Network
Low
Low
None
An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0. A user allowed to access the Blazar dashboard in Horizon may trigger code execution on the Horizon host as the user the Horizon service runs under (because the Python eval function is used). This may result in Horizon host unauthorized access and further compromise of the Horizon service. All setups using the Horizon dashboard with the blazar-dashboard plugin are affected. Affected versions
0
1.0.0
1.0.1
1.1.0
1.2.0
1.3.0
2.0.0
3.0.0
Fixed in
1.3.1
2.0.1
3.0.1
References Updated Sep 06, 2024 · Source: OSV.dev |
0
unknown
|