vulnerability

Oracle Linux: CVE-2020-12245: ELSA-2020-4682: grafana security, bug fix, and enhancement update (MODERATE)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Apr 23, 2020
Added
Nov 12, 2020
Modified
Dec 3, 2025

Description

Grafana before 6.7.3 allows table-panel XSS via column.title or cellLinkTooltip.
A flaw was found in grafana. A XSS is possible in table-panel via column.title or cellLinkTooltip.

Solutions

oracle-linux-upgrade-grafanaoracle-linux-upgrade-grafana-azure-monitororacle-linux-upgrade-grafana-cloudwatchoracle-linux-upgrade-grafana-elasticsearchoracle-linux-upgrade-grafana-graphiteoracle-linux-upgrade-grafana-influxdboracle-linux-upgrade-grafana-lokioracle-linux-upgrade-grafana-mssqloracle-linux-upgrade-grafana-mysqloracle-linux-upgrade-grafana-opentsdboracle-linux-upgrade-grafana-postgresoracle-linux-upgrade-grafana-prometheusoracle-linux-upgrade-grafana-stackdriver
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.