Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Vulnerability List - Page 4

Found 89 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2022-23498 When query caching is enabled in Grafana users can query another users session grafanagrafana High 7.1 2023-02-03 21:34:59 Deep Dive
CVE-2022-23552 Grafana stored XSS in FileUploader component grafanagrafana High 7.3 2023-01-27 22:59:17 Deep Dive
CVE-2022-39324 Grafana vulnerable to spoofing originalUrl of snapshots grafanagrafana Medium 6.7 2023-01-27 22:42:02 Deep Dive
CVE-2022-46156 Grafana's default installation of `synthetic-monitoring-agent` exposes sensitive information grafanasynthetic-monitoring-agent High 7.2 2022-11-30 00:00:00 Deep Dive
CVE-2022-39307 Grafana subject to Exposure of Sensitive Information resulting in User enumeration via forget password grafanagrafana Medium 6.7 2022-11-09 00:00:00 Deep Dive
CVE-2022-39306 Grafana contains Improper Input Validation grafanagrafana Medium 6.4 2022-11-09 00:00:00 Deep Dive
CVE-2022-39328 Grafana vulnerable to race condition allowing privilege escalation grafanagrafana Critical 9.8 2022-11-08 00:00:00 Deep Dive
CVE-2022-31130 Grafana data source and plugin proxy endpoints leaking authentication tokens to some destination plugins grafanagrafana Medium 4.9 2022-10-13 00:00:00 Deep Dive
CVE-2022-31123 Grafana plugin signature bypass vulnerability grafanagrafana Medium 6.1 2022-10-13 00:00:00 Deep Dive
CVE-2022-39201 Data source and plugin proxy endpoints could leak the authentication cookie to some destination plugins grafanagrafana Medium 6.8 2022-10-13 00:00:00 Deep Dive
CVE-2022-39229 Grafana users with email as a username can block other users from signing in grafanagrafana Medium 4.3 2022-10-13 00:00:00 Deep Dive
CVE-2022-36062 Grafana folders admin only permission privilege escalation grafanagrafana High 7.6 2022-09-22 00:00:00 Deep Dive
CVE-2022-35957 Authentication Bypass in Grafana via auth proxy allowing escalation from admin to server admin grafanagrafana Medium 6.6 2022-09-20 00:00:00 Deep Dive
CVE-2022-31176 Grafana Image Renderer leaking files grafanagrafana-image-renderer High 8.3 2022-09-02 00:00:00 Deep Dive
CVE-2022-31107 Grafana account takeover via OAuth vulnerability grafanagrafana High 7.1 2022-07-15 12:30:14 Deep Dive
CVE-2022-31097 Stored XSS in Grafana's Unified Alerting grafanagrafana High 7.3 2022-07-15 12:10:10 Deep Dive
CVE-2022-29170 Grafana Enterprise datasource network restrictions bypass via HTTP redirects grafanagrafana Medium 6.6 2022-05-20 16:10:12 Deep Dive
CVE-2022-24812 FGAC API Key privilege escalation in Grafana grafanagrafana High 8.0 2022-04-12 17:00:19 Deep Dive
CVE-2022-21713 Exposure of Sensitive Information in Grafana grafanagrafana Medium 4.3 2022-02-08 20:50:17 Deep Dive
CVE-2022-21703 Cross Site Request Forgery in Grafana grafanagrafana Medium 6.3 2022-02-08 20:40:10 Deep Dive