Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
grafana | removed | package |
EPSS
Процентиль: 67%
0.00545
Низкий
Связанные уязвимости
CVSS3: 7.5
redhat
около 1 месяца назад
A flaw exists in Grafana Alerting, where the DingDing contact-point integration URL can be revealed in plain text to users with viewer-level permissions due to misconfigured access control. This disclosure permits unauthorized users to view sensitive webhook URLs, including API tokens or keys, without needing elevated privileges.
EPSS
Процентиль: 67%
0.00545
Низкий