Логотип exploitDog
bind:CVE-2024-5526
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-5526

Количество 3

Количество 3

nvd логотип

CVE-2024-5526

больше 1 года назад

Grafana OnCall is an easy-to-use on-call management tool that will help reduce toil in on-call management through simpler workflows and interfaces that are tailored specifically for engineers. Grafana OnCall, from version 1.1.37 before 1.5.2 are vulnerable to a Server Side Request Forgery (SSRF) vulnerability in the webhook functionallity. This issue was fixed in version 1.5.2

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-5cwx-g8mg-7v9c

больше 1 года назад

Grafana OnCall is an easy-to-use on-call management tool that will help reduce toil in on-call management through simpler workflows and interfaces that are tailored specifically for engineers. Grafana OnCall, from version 1.1.37 before 1.5.2 are vulnerable to a Server Side Request Forgery (SSRF) vulnerability in the webhook functionallity. This issue was fixed in version 1.5.2

CVSS3: 7.7
EPSS: Низкий
fstec логотип

BDU:2024-04492

больше 1 года назад

Уязвимость компонента webhook системы управления оповещениями Grafana OnCall, позволяющая нарушителю осуществить SSRF-атаку

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-5526

Grafana OnCall is an easy-to-use on-call management tool that will help reduce toil in on-call management through simpler workflows and interfaces that are tailored specifically for engineers. Grafana OnCall, from version 1.1.37 before 1.5.2 are vulnerable to a Server Side Request Forgery (SSRF) vulnerability in the webhook functionallity. This issue was fixed in version 1.5.2

CVSS3: 7.7
0%
Низкий
больше 1 года назад
github логотип
GHSA-5cwx-g8mg-7v9c

Grafana OnCall is an easy-to-use on-call management tool that will help reduce toil in on-call management through simpler workflows and interfaces that are tailored specifically for engineers. Grafana OnCall, from version 1.1.37 before 1.5.2 are vulnerable to a Server Side Request Forgery (SSRF) vulnerability in the webhook functionallity. This issue was fixed in version 1.5.2

CVSS3: 7.7
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-04492

Уязвимость компонента webhook системы управления оповещениями Grafana OnCall, позволяющая нарушителю осуществить SSRF-атаку

CVSS3: 9.1
0%
Низкий
больше 1 года назад

Уязвимостей на страницу