Количество 10
Количество 10
GHSA-rhxj-gh46-jvw8
Grafana Plugin signature bypass
CVE-2022-31123
Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.
CVE-2022-31123
Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.
CVE-2022-31123
Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.
CVE-2022-31123
Grafana is an open source observability and data visualization platfor ...
BDU:2024-02621
Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с неправильной проверкой криптографической подписи, позволяющая нарушителю установить вредоносное программное обеспечение на уязвимое устройство
SUSE-SU-2023:0362-1
Security update for grafana
SUSE-SU-2023:0353-1
Security update for SUSE Manager Client Tools
ELSA-2023-6420
ELSA-2023-6420: grafana security and enhancement update (MODERATE)
ROS-20240404-01
Множественные уязвимости grafana
Уязвимостей на страницу
Уязвимость  | CVSS  | EPSS  | Опубликовано  | |
|---|---|---|---|---|
GHSA-rhxj-gh46-jvw8 Grafana Plugin signature bypass  | CVSS3: 6.1  | 0% Низкий | больше 1 года назад | |
CVE-2022-31123 Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.  | CVSS3: 6.1  | 0% Низкий | около 3 лет назад | |
CVE-2022-31123 Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.  | CVSS3: 6.1  | 0% Низкий | около 3 лет назад | |
CVE-2022-31123 Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.  | CVSS3: 6.1  | 0% Низкий | около 3 лет назад | |
CVE-2022-31123 Grafana is an open source observability and data visualization platfor ...  | CVSS3: 6.1  | 0% Низкий | около 3 лет назад | |
BDU:2024-02621 Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с неправильной проверкой криптографической подписи, позволяющая нарушителю установить вредоносное программное обеспечение на уязвимое устройство  | CVSS3: 7.8  | 0% Низкий | около 3 лет назад | |
SUSE-SU-2023:0362-1 Security update for grafana  | больше 2 лет назад | |||
SUSE-SU-2023:0353-1 Security update for SUSE Manager Client Tools  | больше 2 лет назад | |||
ELSA-2023-6420 ELSA-2023-6420: grafana security and enhancement update (MODERATE)  | почти 2 года назад | |||
ROS-20240404-01 Множественные уязвимости grafana  | CVSS3: 9.4  | больше 1 года назад | 
Уязвимостей на страницу