← Vulnerability feed

Vulnerability record · CVE-2014-3801 · published 23 May 2014

CVE-2014-3801: Openstack heat information exposure vulnerability

Openstack · Heat

OpenStack Orchestration API (Heat) 2013.2 through 2013.2.3 and 2014.1, when creating the stack for a template using a provider template, allows remote authenticated users to obtain the provider template URL via the resource-type-list.

3.5 CVSS 2.0 Low EPSS 1.6% · top 24.7% CWE-200 · Information exposure
3.5CVSS 2.0 base score
1.6%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
12References
17 Jun 2026Last modified by NVD

Description

OpenStack Orchestration API (Heat) 2013.2 through 2013.2.3 and 2014.1, when creating the stack for a template using a provider template, allows remote authenticated users to obtain the provider template URL via the resource-type-list.

AV:N/AC:M/Au:S/C:P/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2014-3801 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

5.5CVE-2017-2621Openstack heat sensitive information in log file vulnerabilityAn access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improp…EPSS 0.41%5.0CVE-2024-7319Openstack heat information exposure vulnerabilityAn incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon …EPSS 0.39%5.0CVE-2023-1625Openstack heat vulnerabilityAn information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reve…EPSS 0.72%4.3CVE-2016-9185Openstack heat information exposure vulnerabilityIn OpenStack Heat, by launching a new Heat stack with a local URL an authenticated user may conduct network discovery revealing internal network conf…EPSS 1.5%4.0CVE-2013-6426Openstack heat permissions and access controls vulnerabilityThe cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 does not properly enfor…EPSS 1.0%4.0CVE-2013-6428Openstack heat permissions and access controls vulnerabilityThe ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote authenticated users to bypass …EPSS 1.7%5.9CVE-2025-68686FortiOS symbolic link patch bypass exposes sensitive informationFortiOS contains an information exposure flaw (CWE-200) that lets a remote unauthenticated attacker bypass the patch for the symbolic link persistenc…KEVEPSS 30%analysed7.5CVE-2026-20133Cisco Catalyst SD-WAN Manager insufficient file system restrictions expose dataCisco Catalyst SD-WAN Software has insufficient file system restrictions that let an attacker read sensitive files on the underlying operating system…KEVEPSS 32%analysed

Source: NIST National Vulnerability Database (record CVE-2014-3801), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.