Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian 11: Mistral-Dashboard Critical Local File Inclusion DLA-4392-1

debian lts
Calendar Grey December 1, 2025
Dist Debian Esm H88
A critical flaw in Mistral-dashboard for Debian allows arbitrary file disclosure. Update recommended for security.
A local file inclusion vulnerability has been discovered in mistral- dashboard, the OpenStack Workflow as a Service dashboard plugin, that may result in disclosure of arbitrary loc...

Summary

A local file inclusion vulnerability has been discovered in mistral-
dashboard, the OpenStack Workflow as a Service dashboard plugin, that
may result in disclosure of arbitrary local files content through the
'Create Workbook' feature.


For Debian 11 bullseye, this problem has been fixed in version
11.0.0-2+deb11u1.

We recommend that you upgrade your mistral-dashboard packages.

For the detailed security status of mistral-dashboard please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/mistral-dashboard

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
critical
Lowest
Low
Medium
High
Critical

Package: mistral-dashboard
Version: 11.0.0-2+deb11u1
CVE ID: CVE-2021-4472

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here