First published: Wed Feb 06 2019(Updated: )
The Pie Chart Panel plugin through 2019-01-02 for Grafana is vulnerable to XSS via legend data or tooltip data. When a chart is included in a Grafana dashboard, this vulnerability could allow an attacker to gain remote unauthenticated access to the dashboard.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Grafana Piechart-panel | <=1.3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.