<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T08:19:49.592874+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-02572</id>
    <title>bdu:2024-02572</title>
    <updated>2026-10-06T08:19:49.701753+00:00</updated>
    <content>bdu:2024-02572</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-02572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0847</id>
    <title>certfr-2023-avi-0847 — Une vulnérabilité a été découverte dans Grafana. Elle permet à un
attaquant de provoquer une élévation de privilèges.</title>
    <updated>2026-10-06T08:19:49.701796+00:00</updated>
    <content>certfr-2023-avi-0847</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0847"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-266988</id>
    <title>EUVD-2026-266988</title>
    <updated>2026-10-06T08:19:49.701815+00:00</updated>
    <content>EUVD-2026-266988</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-266988"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-4822</id>
    <title>fkie_cve-2023-4822</title>
    <updated>2026-10-06T08:19:49.701826+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Grafana is an open-source platform for monitoring and observability. The vulnerability impacts Grafana instances with several organizations, and allows a user with Organization Admin permissions in one organization to change the permissions associated with Organization Viewer, Organization Editor and Organization Admin roles in all organizations.</p>
<p>It also allows an Organization Admin to assign or revoke any permissions that they have to any user globally.</p>
<p>This means that any Organization Admin can elevate their own permissions in any organization that they are already a member of, or elevate or restrict the permissions of any other user.</p>
<p>The vulnerability does not allow a user to become a member of an organization that they are not already a member of, or to add any other users to an organization that the current user is not a member of.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-4822"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fw9c-75hh-89p6</id>
    <title>GHSA-fw9c-75hh-89p6 — Grafana privilege escalation vulnerability</title>
    <updated>2026-10-06T08:19:49.701863+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/grafana/grafana</p>
<p>Grafana is an open-source platform for monitoring and observability. The vulnerability impacts instances with several organizations, and allows a user with Organization Admin permissions in one organization to change the permissions associated with Organization Viewer, Organization Editor and Organization Admin roles in all organizations.</p>
<p>It also allows an Organization Admin to assign or revoke any permissions that they have to any user globally.</p>
<p>This means that any Organization Admin can elevate their own permissions in any organization that they are already a member of, or elevate or restrict the permissions of any other user.</p>
<p>The vulnerability does not allow a user to become a member of an organization that they are not already a member of, or to add any other users to an organization that the current user is not a member of.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fw9c-75hh-89p6"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-4822</id>
    <title>gsd-2023-4822</title>
    <updated>2026-10-06T08:19:49.701891+00:00</updated>
    <content>gsd-2023-4822</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-4822"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:3925</id>
    <title>RHSA-2024:3925 — Red Hat Security Advisory: Red Hat Ceph Storage 7.1 security, enhancements, and bug fix update</title>
    <updated>2026-10-06T08:19:49.701903+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>grafana: account takeover possible when using Azure AD OAuth grafana: incorrect assessment of permissions across organizations go-git: Maliciously crafted Git server replies can cause DoS on go-git clients go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:3925"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-4822</id>
    <title>UBUNTU-CVE-2023-4822</title>
    <updated>2026-10-06T08:19:49.701928+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: grafana</p>
<p>Grafana is an open-source platform for monitoring and observability. The vulnerability impacts Grafana instances with several organizations, and allows a user with Organization Admin permissions in one organization to change the permissions associated with Organization Viewer, Organization Editor and Organization Admin roles in all organizations. It also allows an Organization Admin to assign or revoke any permissions that they have to any user globally. This means that any Organization Admin can elevate their own permissions in any organization that they are already a member of, or elevate or restrict the permissions of any other user. The vulnerability does not allow a user to become a member of an organization that they are not already a member of, or to add any other users to an organization that the current user is not a member of.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-4822"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2646</id>
    <title>WID-SEC-W-2023-2646 — Grafana: Schwachstelle ermöglicht Privilegieneskalation</title>
    <updated>2026-10-06T08:19:49.701950+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Grafana ausnutzen, um seine Privilegien zu erhöhen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2646"/>
  </entry>
</feed>
