CVE-2019-13068 PUBLISHED CVSS 5.400000095367432 MEDIUM

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

EPSS 7.73% · 91.9th percentile

Risk Scores

CVSS v3.0
5.400000095367432
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
EPSS Score
7.73%
91.9th percentile

Affected Products

VendorProductVersions
n/an/an/a
grafanagrafana0
github.comgrafana/grafana0

Timeline

References

Open in Interactive Console →