heat 1:7.0.0-1 is marked for autoremoval from testing on 2016-12-04 It is affected by these RC bugs: 843232: heat: CVE-2016-9185: template source URL allows network port scan It (build-)depends on packages with these RC bugs: 828521: qpid-proton: FTBFS with openssl 1.1.0