<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:47:58 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-10839</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-10839</link>
      <description>bdu:2026-10839</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-10839</guid>
    </item>
    <item>
      <title>BIT-grafana-2026-9029 — Stored XSS in the Geomap panel tile-layer attribution</title>
      <link>https://cve.radiocsirt.org/vuln/bit-grafana-2026-9029</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: grafana&lt;/p&gt;
&lt;p&gt;A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel&amp;#39;s XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored cross-site scripting).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: grafana&lt;/p&gt;
&lt;p&gt;A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel&amp;#39;s XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored cross-site scripting).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-grafana-2026-9029</guid>
    </item>
    <item>
      <title>EUVD-2026-360199</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-360199</link>
      <description>EUVD-2026-360199</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-360199</guid>
    </item>
    <item>
      <title>fkie_cve-2026-9029</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-9029</link>
      <description>&lt;p&gt;A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel&amp;#39;s XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored cross-site scripting).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel&amp;#39;s XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored cross-site scripting).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-9029</guid>
    </item>
    <item>
      <title>GHSA-9g84-39mm-q4p3 — Grafana geomap panel's XYZ tile layer has a sanitize-then-interpolate ordering bug</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-9g84-39mm-q4p3</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/grafana/grafana&lt;/p&gt;
&lt;p&gt;The geomap panel&amp;#39;s XYZ tile layer has a sanitize-then-interpolate ordering bug. sanitizeTextPanelContent() runs on the raw template string before getTemplateSrv().replace() substitutes the variable value, which uses the glob format with no HTML escaping. The result is passed to OpenLayers via element.innerHTML. An Editor can set a textbox variable&amp;#39;s default value to an XSS payload that executes for every user who opens the dashboard. This is a bypass of the CVE-2023-0507 fix&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/grafana/grafana&lt;/p&gt;
&lt;p&gt;The geomap panel&amp;#39;s XYZ tile layer has a sanitize-then-interpolate ordering bug. sanitizeTextPanelContent() runs on the raw template string before getTemplateSrv().replace() substitutes the variable value, which uses the glob format with no HTML escaping. The result is passed to OpenLayers via element.innerHTML. An Editor can set a textbox variable&amp;#39;s default value to an XSS payload that executes for every user who opens the dashboard. This is a bypass of the CVE-2023-0507 fix&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-9g84-39mm-q4p3</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11619-1 — grafana-12.4.5-4.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11619-1</link>
      <description>&lt;p&gt;grafana-12.4.5-4.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;grafana-12.4.5-4.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11619-1</guid>
    </item>
    <item>
      <title>RHSA-2026:67573 — Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:67573</link>
      <description>&lt;p&gt;grafana: Grafana: Arbitrary code execution and information disclosure via Cross-Site Scripting in geomap panel grafana: tempo: loki: Tempo and Loki Datasource Plugins: Information disclosure and unauthorized actions via path traversal dompurify: DOMPurify: Cross-Site Scripting via IN_PLACE sanitization joi: joi: Prototype Pollution via custom messages&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;grafana: Grafana: Arbitrary code execution and information disclosure via Cross-Site Scripting in geomap panel grafana: tempo: loki: Tempo and Loki Datasource Plugins: Information disclosure and unauthorized actions via path traversal dompurify: DOMPurify: Cross-Site Scripting via IN_PLACE sanitization joi: joi: Prototype Pollution via custom messages&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:67573</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-9029</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-9029</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: grafana&lt;/p&gt;
&lt;p&gt;A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel&amp;#39;s XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored cross-site scripting).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: grafana&lt;/p&gt;
&lt;p&gt;A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel&amp;#39;s XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored cross-site scripting).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-9029</guid>
    </item>
  </channel>
</rss>
