Vulnerabilities
Vulnerable Software
Grafana:  >> Grafana  >> 10.3.0  Security Vulnerabilities
A user with the permissions to create a data source can use Grafana API to create a data source with UID set to *. Doing this will grant the user access to read, query, edit and delete all data sources within the organization.
CVSS Score
6.0
EPSS Score
0.002
Published
2024-03-07
A user changing their email after signing up and verifying it can change it without verification in profile settings. The configuration option "verify_email_enabled" will only validate email only on sign up.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-02-13


Contact Us

Shodan ® - All rights reserved