Grafana 10.0.7 Enterprise Edition

CPE Details

Grafana 10.0.7 Enterprise Edition
10.0.7
2023-10-20
15h01 +00:00
2023-10-20
15h01 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:grafana:grafana:10.0.7:*:*:*:enterprise:*:*:*

Informations

Vendor

grafana

Product

grafana

Version

10.0.7

Software Edition

enterprise

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-1442 2024-03-07 17h45 +00:00 A user with the permissions to create a data source can use Grafana API to create a data source with UID set to *. Doing this will grant the user access to read, query, edit and delete all data sources within the organization.
8.8
High
CVE-2023-4399 2023-10-17 07h09 +00:00 Grafana is an open-source platform for monitoring and observability. In Grafana Enterprise, Request security is a deny list that allows admins to configure Grafana in a way so that the instance doesn’t call specific hosts. However, the restriction can be bypassed used punycode encoding of the characters in the request address.
7.2
High