RHSA-2019:0019MediumCVSS 6.1
Red Hat Security Advisory: grafana security and bug fix update
🔗 CVE IDs covered (2)
📋 Description
CVE-2018-15727 — grafana: authentication bypass knowing only a username of an LDAP or OAuth user CVE-2018-18623 — grafana: XSS vulnerability via the "Dashboard > Text Panel" screen
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2019:0019
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1624088
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1633825
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1647494
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1647496
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1652427
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1653273
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_0019.json