CVE-2018-18624
02.06.2020, 17:15
Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| grafana | grafana | 5.3.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| grafana |
| ||
| grafana-azure-monitor |
| ||
| grafana-cloudwatch |
| ||
| grafana-elasticsearch |
| ||
| grafana-graphite |
| ||
| grafana-influxdb |
| ||
| grafana-loki |
| ||
| grafana-mssql |
| ||
| grafana-mysql |
| ||
| grafana-opentsdb |
| ||
| grafana-postgres |
| ||
| grafana-prometheus |
| ||
| grafana-stackdriver |
|