openstack-heat
OpenStack Orchestration
Activity
- Latest release
- 4d ago
- Total releases
- 60
- Cadence
- ~19 days
- Last 12 months
- 7
Details
- License
- Apache-2.0
- First release
- Sep 28, 2018
| Version | Released | |
|---|---|---|
27.0.0.0rc1
pre
|
27.0.0.0rc1
pre
Dependencies (56)
+ 48 more |
|
25.0.1
patch
|
25.0.1
patch
Dependencies (58)
+ 50 more |
|
26.0.1
patch
|
26.0.1
patch
Dependencies (59)
+ 51 more |
|
24.1.1
patch
|
24.1.1
patch
Dependencies (60)
+ 52 more |
|
26.0.0
major
|
26.0.0
major
Dependencies (59)
+ 51 more |
|
26.0.0.0rc1
pre
|
26.0.0.0rc1
pre
Dependencies (59)
+ 51 more |
|
25.0.0
major
|
25.0.0
major
Dependencies (58)
+ 50 more |
|
25.0.0.0rc1
pre
|
25.0.0.0rc1
pre
Dependencies (58)
+ 50 more |
|
24.1.0
minor
|
24.1.0
minor
Dependencies (60)
+ 52 more |
|
21.0.1
patch
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
21.0.1
patch
Dependencies (65)
+ 57 more |
|
24.0.0
major
|
24.0.0
major
Dependencies (60)
+ 52 more |
|
24.0.0.0rc1
pre
|
24.0.0.0rc1
pre
Dependencies (60)
+ 52 more |
|
23.0.0
major
|
23.0.0
major
Dependencies (60)
+ 52 more |
|
23.0.0.0rc1
pre
|
23.0.0.0rc1
pre
Dependencies (60)
+ 52 more |
|
22.0.1
patch
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
22.0.1
patch
Dependencies (63)
+ 55 more |
|
22.0.0
major
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
22.0.0
major
Dependencies (63)
+ 55 more |
|
22.0.0.0rc1
pre
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
22.0.0.0rc1
pre
Dependencies (63)
+ 55 more |
|
19.0.2
patch
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
19.0.2
patch
Dependencies (64)
+ 56 more |
|
20.0.1
patch
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
20.0.1
patch
Dependencies (64)
+ 56 more |
|
21.0.0
major
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
21.0.0
major
Dependencies (65)
+ 57 more |
|
21.0.0.0rc1
pre
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
21.0.0.0rc1
pre
Dependencies (65)
+ 57 more |
|
18.0.1
patch
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
18.0.1
patch
Dependencies (64)
+ 56 more |
|
19.0.1
patch
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
19.0.1
patch
Dependencies (64)
+ 56 more |
|
17.0.2
patch
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
17.0.2
patch
Dependencies (65)
+ 57 more |
|
20.0.0
major
1 CVE
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev |
20.0.0
major
Dependencies (64)
+ 56 more |
|
20.0.0.0rc2
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
20.0.0.0rc2
pre
Dependencies (64)
+ 56 more |
|
20.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
20.0.0.0rc1
pre
Dependencies (64)
+ 56 more |
|
16.1.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
16.1.0
minor
Dependencies (65)
+ 57 more |
|
19.0.0
major
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
19.0.0
major
Dependencies (64)
+ 56 more |
|
19.0.0.0rc2
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
19.0.0.0rc2
pre
Dependencies (64)
+ 56 more |
|
19.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
19.0.0.0rc1
pre
Dependencies (64)
+ 56 more |
|
18.0.0
major
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
18.0.0
major
Dependencies (64)
+ 56 more |
|
18.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
18.0.0.0rc1
pre
Dependencies (64)
+ 56 more |
|
17.0.1
patch
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
17.0.1
patch
Dependencies (65)
+ 57 more |
|
15.1.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
15.1.0
minor
Dependencies (64)
+ 56 more |
|
17.0.0
major
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
17.0.0
major
Dependencies (65)
+ 57 more |
|
17.0.0.0rc2
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
17.0.0.0rc2
pre
Dependencies (65)
+ 57 more |
|
17.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
17.0.0.0rc1
pre
Dependencies (65)
+ 57 more |
|
14.2.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
14.2.0
minor
Dependencies (63)
+ 55 more |
|
16.0.0
major
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
16.0.0
major
Dependencies (65)
+ 57 more |
|
16.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
16.0.0.0rc1
pre
Dependencies (65)
+ 57 more |
|
15.0.0
major
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
15.0.0
major
Dependencies (63)
+ 55 more |
|
14.1.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
14.1.0
minor
Dependencies (63)
+ 55 more |
|
13.1.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
13.1.0
minor
Dependencies (61)
+ 53 more |
|
12.2.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
12.2.0
minor
Dependencies (61)
+ 53 more |
|
15.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
15.0.0.0rc1
pre
Dependencies (63)
+ 55 more |
|
13.0.2
patch
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
13.0.2
patch
Dependencies (61)
+ 53 more |
|
12.1.0
minor
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
12.1.0
minor
Dependencies (61)
+ 53 more |
|
14.0.0
major
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
14.0.0
major
Dependencies (63)
+ 55 more |
|
14.0.0.0rc1
pre
2 CVEs
CVE-2024-7319
PYSEC-2026-1750
GHSA-2fqr-cx7q-3ph8
Jul 07, 2026
openstack-heat may disclose sensitive information
Medium
Network
Low
Low
None
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 35 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0
20.0.0.0rc1
20.0.0.0rc2
20.0.1
21.0.0
21.0.0.0rc1
21.0.1
22.0.0
22.0.0.0rc1
22.0.1
References Updated Jul 07, 2026 · Source: OSV.dev
CVE-2023-1625
PYSEC-2026-1751
GHSA-5836-grcc-8j89
Jul 07, 2026
OpenStack Heat information leak vulnerability
7.4
/ 10
High
Network
Low
Low
None
Changed
Low
Low
Low
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system. Affected versions
11.0.0.0rc2.dev52
11.0.2
11.0.3
12.0.0
12.0.0.0rc1
12.0.0.0rc2
12.1.0
12.2.0
13.0.0
13.0.0.0rc1
13.0.0.0rc2
13.0.1
+ 27 more Show less
13.0.2
13.1.0
14.0.0
14.0.0.0rc1
14.1.0
14.2.0
15.0.0
15.0.0.0rc1
15.1.0
16.0.0
16.0.0.0rc1
16.1.0
17.0.0
17.0.0.0rc1
17.0.0.0rc2
17.0.1
17.0.2
18.0.0
18.0.0.0rc1
18.0.1
19.0.0
19.0.0.0rc1
19.0.0.0rc2
19.0.1
19.0.2
20.0.0.0rc1
20.0.0.0rc2
Fixed in
20.0.0
References
Updated Jul 07, 2026 · Source: OSV.dev |
14.0.0.0rc1
pre
Dependencies (63)
+ 55 more |