Количество 5
Количество 5
CVE-2026-28377
A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potentially allowing unauthorized users to obtain the key used to encrypt trace data stored in S3. Thanks to william_goodfellow for reporting this vulnerability.
CVE-2026-28377
A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potentially allowing unauthorized users to obtain the key used to encrypt trace data stored in S3. Thanks to william_goodfellow for reporting this vulnerability.
GHSA-ffqx-q65f-36jf
Grafana Tempo has Inadequate Encryption Strength
BDU:2026-06943
Уязвимость программного обеспечения для хранения и анализа распределенных трассировок Grafana Tempo, связанная с хранением информации в открытом виде, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260625-73-0020
Уязвимость tempo
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-28377 A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potentially allowing unauthorized users to obtain the key used to encrypt trace data stored in S3. Thanks to william_goodfellow for reporting this vulnerability. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-28377 A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potentially allowing unauthorized users to obtain the key used to encrypt trace data stored in S3. Thanks to william_goodfellow for reporting this vulnerability. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
GHSA-ffqx-q65f-36jf Grafana Tempo has Inadequate Encryption Strength | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
BDU:2026-06943 Уязвимость программного обеспечения для хранения и анализа распределенных трассировок Grafana Tempo, связанная с хранением информации в открытом виде, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 7.5 | 0% Низкий | 5 месяцев назад | |
ROS-20260625-73-0020 Уязвимость tempo | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу