CVE-2021-27962 PUBLISHED

Grafana Enterprise 7.2.x and 7.3.x before 7.3.10 and 7.4.x before 7.4.5 allows a dashboard editor to bypass a permission check concerning a data source they should not be able to access.

EPSS 0.28% · 51.0th percentile

Risk Scores

EPSS Score
0.28%
51.0th percentile

Affected Products

VendorProductVersions
Bitnamigrafana7.2.0, 7.4.0
Bitnamigrafana7.4.0, 7.2.0

Timeline

References

Open in Interactive Console →