openstack/mistral · Week of 2026-10-10
openstack/mistral — 2026-10-10
Cross-project isolation hardening. The bulk of the week — roughly 40 merges and ~4,700 lines — was a coordinated security push backported across master and four stable branches. Access control is now enforced when updating workbooks, environments, and action definitions, and the create-or-update paths for definitions, code sources, dynamic actions, and cron triggers now resolve objects within the caller's own project rather than silently hijacking rows owned by other projects. Resource sharing was tightened so that only the owner of a resource may share it, and the maintenance endpoint was restricted to admins.
Remote code execution fix. A separate RCE via std.ssh_proxied's proxy_command was patched and backported across three branches — see 1009482. Together with the tenancy fixes, this looks like a batch disclosure landing simultaneously on all supported lines.
Elsewhere. A small cleanup migration for dynamic actions and code sources rode along on the same backport trains, and a pair of tox/flake8 and lambda-cleanup patches rounded out the week.