Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37579
HistoryOct 17, 2022 - 5:28 a.m.

Information Disclosure

2022-10-1705:28:39
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21
grafana
vulnerability
information disclosure
cookies
unauthorized actions

EPSS

0.001

Percentile

41.2%

grafana is vulnerable to information disclosure. The vulnerability exists in multiple functions due to forwarding login cookies in outgoing requests resulting in an attacker gaining access to cookies required to perform unauthorized actions.