Loading HuntDB...

GHSA-29xc-2rhm-5f2q

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

The CloudStack management server and secondary storage VM could be tricked into making requests to restricted or random resources by means of following 301 HTTP redirects presented by external servers when downloading templates or ISOs. Users are recommended to upgrade to version 4.18.1.1 or 4.19.0.1, which fixes this issue.

Related CVEs

Key Information

GHSA ID
GHSA-29xc-2rhm-5f2q
Published
April 4, 2024 9:30 AM
Last Modified
June 30, 2025 3:30 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 10, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.