Vulnerabilities
Vulnerable Software
Grafana:  >> Tempo  >> 0.3.0  Security Vulnerabilities
A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potentially allowing unauthorized users to obtain the key used to encrypt trace data stored in S3. Thanks to william_goodfellow for reporting this vulnerability.
CVSS Score
7.5
EPSS Score
0.002
Published
2026-03-26


Contact Us

Shodan ® - All rights reserved