Search CVE reports


Toggle filters

1 – 2 of 2 results


CVE-2026-76878

Medium priority
Needs evaluation

In OpenStack Aodh before 22.0.1, the alarm list API bypasses project scoping when the all_projects query parameter is set to false. The API checks for the presence of the all_projects key rather than its value; a true value...

2 affected packages

aodh, watcher

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
aodh Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
watcher Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2017-12440

Medium priority

Some fixes available 1 of 2

Aodh as packaged in Openstack Ocata and Newton before change-ID I8fd11a7f9fe3c0ea5f9843a89686ac06713b7851 and before Pike-rc1 does not verify that trust IDs belong to the user when creating alarm action with the scheme trust+http,...

1 affected package

aodh

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
aodh Not affected Not affected Not affected Not affected Not affected
Show less packages