Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25971
HistoryJul 28, 2020 - 5:15 a.m.

Cross-site Scripting (XSS)

2020-07-2805:15:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.005 Low

EPSS

Percentile

76.7%

github.com/grafana/grafana is vulnerable to cross-site scripting (XSS). The vulnerability exists as the value of snapshotUrl in public/app/features/dashboard/components/DashNav/DashNav.tsx is not sanitized.