vulnerability

Red Hat: CVE-2019-19499: CVE-2019-19499 grafana: arbitrary file read via MySQL data source (Multiple Advisories)

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:N)
Published
Aug 28, 2020
Added
Nov 5, 2020
Modified
Aug 11, 2025

Description

Grafana <= 6.4.3 has an Arbitrary File Read vulnerability, which could be exploited by an authenticated attacker that has privileges to modify the data source configurations.

Solutions

redhat-upgrade-grafanaredhat-upgrade-grafana-azure-monitorredhat-upgrade-grafana-cloudwatchredhat-upgrade-grafana-debuginforedhat-upgrade-grafana-elasticsearchredhat-upgrade-grafana-graphiteredhat-upgrade-grafana-influxdbredhat-upgrade-grafana-lokiredhat-upgrade-grafana-mssqlredhat-upgrade-grafana-mysqlredhat-upgrade-grafana-opentsdbredhat-upgrade-grafana-postgresredhat-upgrade-grafana-prometheusredhat-upgrade-grafana-stackdriver
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.