Описание
Organization admins can delete pending invites created in an organization they are not part of.
A flaw was found in Grafana. Organization administrators may be able to delete pending invites created in organizations they are not a part of.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | grafana | Fix deferred | ||
| Red Hat Enterprise Linux 8 | grafana | Fix deferred | ||
| Red Hat Enterprise Linux 9 | grafana | Fix deferred | ||
| Red Hat Storage 3 | grafana | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
2.2 Low
CVSS3
Связанные уязвимости
Organization admins can delete pending invites created in an organization they are not part of.
Organization admins can delete pending invites created in an organization they are not part of.
Organization admins can delete pending invites created in an organizat ...
Grafana org admin can delete pending invites in different org
Уязвимость веб-инструмента представления данных Grafana, связанная с обходом авторизации с помощью ключа, контролируемого пользователем, позволяющая нарушителю оказать влияние на целостность защищаемой информации
EPSS
2.2 Low
CVSS3