View at Official suse advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2016-4428 severity moderate: SUSE including 80 source package names (openstack-ceilometer-5.0.4~a0~dev6-6.1, openstack-ceilometer-agent-central-5.0.4~a0~dev6-6.1, …), 80 product×package rows across 1 product lines (SUSE OpenStack Cloud 6): Fixed 80.
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.