Advisories for Pypi/Novajoin package

2019

Improper Access Control

A flaw was discovered in the python-novajoin plugin, all versions up to for Red Hat OpenStack Platform. The novajoin API lacked sufficient access control, allowing any keystone authenticated user to generate FreeIPA tokens.