Количество 6
Количество 6
CVE-2026-10601
A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source plugins to reach unintended backend endpoints. Depending on the backend configuration this can expose data source credentials, leak internal responses, or trigger administrative actions on the configured backend.
CVE-2026-10601
A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source plugins to reach unintended backend endpoints. Depending on the backend configuration this can expose data source credentials, leak internal responses, or trigger administrative actions on the configured backend.
ROS-20260714-80-0069
Уязвимость grafana
GHSA-9493-h4f5-633x
Grafana: Path traversal in the Tempo and Loki data source plugins
BDU:2026-10549
Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260714-73-0064
Уязвимость grafana
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-10601 A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source plugins to reach unintended backend endpoints. Depending on the backend configuration this can expose data source credentials, leak internal responses, or trigger administrative actions on the configured backend. | CVSS3: 5.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-10601 A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source plugins to reach unintended backend endpoints. Depending on the backend configuration this can expose data source credentials, leak internal responses, or trigger administrative actions on the configured backend. | CVSS3: 5.4 | 0% Низкий | 3 месяца назад | |
ROS-20260714-80-0069 Уязвимость grafana | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
GHSA-9493-h4f5-633x Grafana: Path traversal in the Tempo and Loki data source plugins | CVSS3: 5.4 | 0% Низкий | 3 месяца назад | |
BDU:2026-10549 Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
ROS-20260714-73-0064 Уязвимость grafana | CVSS3: 4.3 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу