Known vulnerabilities in grafana (Red Hat package) - page 4

Software CPE: cpe:2.3:o:red_hat:grafana_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 82
Public exploits: 7
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting grafana (Red Hat package) grafana (Red Hat package) is affected by 82 known vulnerabilities: 6 high, 59 medium, 17 low Critical High Medium Low

Vulnerabilities (82)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU66868 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-23648
CWE-79 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 30.08.2022 SB2022083037
SB2022083038
SB2022110844
and 6 more
#VU66070 - Resource exhaustion
CVE-2022-30633
CWE-400 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 72 more
#VU66069 - Resource exhaustion
CVE-2022-28131
CWE-400 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 72 more
#VU66068 - Resource exhaustion
CVE-2022-30635
CWE-400 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 86 more
#VU66067 - Resource exhaustion
CVE-2022-30632
CWE-400 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 79 more
#VU66065 - Resource exhaustion
CVE-2022-1962
CWE-400 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 73 more
#VU66064 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-1705
CWE-444 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 86 more
#VU64406 - Resource exhaustion
CVE-2021-27358
CWE-400 Medium
Available
No
7.5.9-4.el8 15.06.2022 SB2021081235
SB2021111029
SB2022022701
#VU64402 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21673
CWE-200 Low
No
No
7.5.15-3.el8, 7.5.15-3.el9 15.06.2022 SB2022061623
SB2022062026
SB2022081215
and 12 more
#VU64399 - Cross-Site Request Forgery (CSRF)
CVE-2022-21703
CWE-352 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64397 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-21702
CWE-79 Low
No
No
7.5.15-3.el8, 7.5.15-3.el9 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64394 - Authorization Bypass Through User-Controlled Key
CVE-2022-21713
CWE-639 Low
No
No
7.5.15-3.el8, 7.5.15-3.el9 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 13 more
#VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43813
CWE-22 Low
No
No
7.5.11-2.el8 14.06.2022 SB2022061422
SB2022062026
SB2022081215
and 16 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
7.5.15-3.el8, 7.5.15-3.el9 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU58824 - Improper input validation
CVE-2021-44716
CWE-20 Medium
No
No
5.2.4-5.el7rhgs, 7.3.6-4.el8_4, 7.5.9-5.el8_5 10.12.2021 SB2021121010
SB2021121011
SB2021121605
and 67 more
#VU57320 - Improper Access Control
CVE-2021-39226
CWE-284 Medium
Available
Exploited
6.2.2-7.el8_1, 6.3.6-3.el8_2, 7.3.6-3.el8_4 12.10.2021 SB2021101262
SB2021101320
SB2021101321
and 22 more
#VU56023 - Missing Authorization
CVE-2021-33197
CWE-862 Medium
No
No
7.5.9-4.el8 22.08.2021 SB2021070405
SB2021082204
SB2021083116
and 41 more
#VU56022 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-33195
CWE-79 Medium
No
No
7.5.9-4.el8 22.08.2021 SB2021070405
SB2021082204
SB2021083116
and 38 more
#VU55665 - Improper Certificate Validation
CVE-2021-34558
CWE-295 Medium
Available
No
7.5.9-4.el8 09.08.2021 SB2021080909
SB2021080912
SB2021081122
and 65 more
#VU50047 - Incorrect Calculation
CVE-2021-3114
CWE-682 Medium
No
No
7.5.9-4.el8 26.01.2021 SB2021012714
SB2021012715
SB20210120130
and 40 more


Showing elements 61 - 80 out of 82