Количество 10
Количество 10
GHSA-7g92-g4vh-hp84
Grafana OSS: Authorization bypass allows users with Editor role to modify protected webhook URLs without permissions
CVE-2026-21724
A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning contact points API allows users with Editor role to modify protected webhook URLs without the required alert.notifications.receivers.protected:write permission.
CVE-2026-21724
A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning contact points API allows users with Editor role to modify protected webhook URLs without the required alert.notifications.receivers.protected:write permission.
CVE-2026-21724
A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning contact points API allows users with Editor role to modify protected webhook URLs without the required alert.notifications.receivers.protected:write permission.
CVE-2026-21724
A vulnerability has been discovered in Grafana OSS where an authorizat ...
BDU:2026-07792
Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260524-73-0048
Уязвимость grafana
SUSE-SU-2026:2258-1
Security update for grafana
SUSE-SU-2026:2243-1
Security update 5.0.8 for Multi-Linux Manager Client Tools
openSUSE-SU-2026:20940-1
Security update for grafana
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-7g92-g4vh-hp84 Grafana OSS: Authorization bypass allows users with Editor role to modify protected webhook URLs without permissions | CVSS3: 5.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-21724 A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning contact points API allows users with Editor role to modify protected webhook URLs without the required alert.notifications.receivers.protected:write permission. | CVSS3: 5.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-21724 A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning contact points API allows users with Editor role to modify protected webhook URLs without the required alert.notifications.receivers.protected:write permission. | CVSS3: 5.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-21724 A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning contact points API allows users with Editor role to modify protected webhook URLs without the required alert.notifications.receivers.protected:write permission. | CVSS3: 5.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-21724 A vulnerability has been discovered in Grafana OSS where an authorizat ... | CVSS3: 5.4 | 0% Низкий | 4 месяца назад | |
BDU:2026-07792 Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 4.3 | 0% Низкий | 4 месяца назад | |
ROS-20260524-73-0048 Уязвимость grafana | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
SUSE-SU-2026:2258-1 Security update for grafana | около 2 месяцев назад | |||
SUSE-SU-2026:2243-1 Security update 5.0.8 for Multi-Linux Manager Client Tools | около 2 месяцев назад | |||
openSUSE-SU-2026:20940-1 Security update for grafana | около 2 месяцев назад |
Уязвимостей на страницу