AVG-811

Package grafana
Status Fixed
Severity High
Type arbitrary filesystem access
Affected 5.3.2-1
Fixed 5.3.4-1
Current 5.4.2-3 [community]
Ticket None
Created Wed Nov 14 14:18:11 2018
Issue Severity Remote Type Description
CVE-2018-19039 High Yes Arbitrary filesystem access
Al security issue has been found in grafana before 5.3.3, that could allow any users with Editor or Admin permissions in Grafana to read any file that the...
Date Advisory Package Description
15 Nov 2018 ASA-201811-15 grafana arbitrary filesystem access