VDB

RHSA-2022%3A6252

RHSA-2022%3A6252 PUBLISHED CVSS 7.300000190734863 HIGH

An authentication bypass was found in grafana. An attacker on the network is able to view and delete snapshots by accessing a literal path.

Risk Scores

CVSS 3.1
7.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Affected Products

VendorProductVersions
Red Hatopenshift3/kuryr-controller@sha256:8817105a80ed4d8d04f8e3ff429a6931ad0e04b054c48d5036d7dbaaed31d99a_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/kuryr-controller@sha256:8817105a80ed4d8d04f8e3ff429a6931ad0e04b054c48d5036d7dbaaed31d99a_amd64
Red Hatopenshift3/ose-kube-rbac-proxy@sha256:2086e7214e5b431c8f6a68a8e7973fbc3afbc36dec2dd0943b33cb274453365d_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-kube-rbac-proxy@sha256:2086e7214e5b431c8f6a68a8e7973fbc3afbc36dec2dd0943b33cb274453365d_amd64
Red Hatopenshift3/registry-console@sha256:ec036281c7705e875bca4c6937b84db8e2375bd07bc87c3621508c328ac40352_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/registry-console@sha256:ec036281c7705e875bca4c6937b84db8e2375bd07bc87c3621508c328ac40352_amd64
Red Hatopenshift3/ose-web-console@sha256:a464cb6c95717d07ff19967d4cb1cb9b07061ed5886d5f0099fb60ad9ee32f5c_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-web-console@sha256:a464cb6c95717d07ff19967d4cb1cb9b07061ed5886d5f0099fb60ad9ee32f5c_amd64
Red Hatopenshift3/ose-ansible-service-broker@sha256:154c3c8467fc142ce247a385cf26ea9c57bb7f7a3000562cfdc45864cb3c8583_amd64 as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/ose-service-catalog@sha256:b4bd0457e64a303f25fc20a7e8445eb82b901cd6ec4f875de474dc41226e430e_amd64 as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/ose-kube-state-metrics@sha256:6ac4292cfe5d2b1b53ede902d33dfc7ade1ff74f550fc0a81c7f76a9fddce721_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-kube-state-metrics@sha256:6ac4292cfe5d2b1b53ede902d33dfc7ade1ff74f550fc0a81c7f76a9fddce721_amd64
Red Hatopenshift3/ose-logging-elasticsearch5@sha256:00aa2f0a9ef96ee9337fa0c2327144d9d327c8d4ee79a25b858abc2f258f4c06_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-logging-elasticsearch5@sha256:00aa2f0a9ef96ee9337fa0c2327144d9d327c8d4ee79a25b858abc2f258f4c06_amd64
Red Hatopenshift3/ose-operator-lifecycle-manager@sha256:1583fdf12746c713c27cb7fa0b7298c31748e2985c6269f402e3ba8da4c9e219_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-operator-lifecycle-manager@sha256:1583fdf12746c713c27cb7fa0b7298c31748e2985c6269f402e3ba8da4c9e219_amd64
Red Hatopenshift3/prometheus-alertmanager@sha256:390fb198a7ace1c8cd30dd46b02819f84c497c15adf26c7a0a874cf20f9ac5cd_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/prometheus-alertmanager@sha256:390fb198a7ace1c8cd30dd46b02819f84c497c15adf26c7a0a874cf20f9ac5cd_amd64
Red Hatopenshift3/ose-logging-kibana5@sha256:2662a1231aa91cff1867d5a5f7ca7a2c0a8eae319d29fc9f39899562a95f4074_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-logging-kibana5@sha256:2662a1231aa91cff1867d5a5f7ca7a2c0a8eae319d29fc9f39899562a95f4074_amd64
Red Hatopenshift3/ose-egress-router@sha256:e13ef612c0abf48a2c9cb9422d70b936eb4fb41d163ac063e2de4a5d1e0aa4d4_amd64 as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/image-inspector@sha256:ad7364d765786255fb0132a175d2bc7b777651769699d8b8e62022071d3c7061_amd64 as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/ose-hyperkube@sha256:645d1e79413de579ad86d178bf960059bd6889e630a9b661435e671f610f59d9_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-hyperkube@sha256:645d1e79413de579ad86d178bf960059bd6889e630a9b661435e671f610f59d9_amd64
Red Hatopenshift3/ose-recycler@sha256:6dffd1e9b5c8e8d59cb320be7581e11472957cd72834a50a5ff0f6cc7c900e15_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-recycler@sha256:6dffd1e9b5c8e8d59cb320be7581e11472957cd72834a50a5ff0f6cc7c900e15_amd64
Red Hatopenshift3/ose-metrics-schema-installer@sha256:9672fb112138f23e02e4bf795d2134906db162ef428e95a537b9f55c861070e1_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-metrics-schema-installer@sha256:9672fb112138f23e02e4bf795d2134906db162ef428e95a537b9f55c861070e1_amd64
Red Hatopenshift3/ose-configmap-reloader@sha256:f680c30df7cf1d5e067eed21a7316000db3c7b7ab2f1f7fc0fd6cd20b6e5efa3_amd64 as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/local-storage-provisioner@sha256:c8fe8590e4625ca803e842b69f75449304b9f1d1228742928397084e8964f32f_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/local-storage-provisioner@sha256:c8fe8590e4625ca803e842b69f75449304b9f1d1228742928397084e8964f32f_amd64
Red Hatopenshift3/ose-metrics-heapster@sha256:62545d06e14775d68bd1f29befd40c49fd48c0c2bd846c83e972b9e1aec84efa_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-metrics-heapster@sha256:62545d06e14775d68bd1f29befd40c49fd48c0c2bd846c83e972b9e1aec84efa_amd64
Red Hatopenshift3/mysql-apb@sha256:abcc3f2d22048d5add1d4880b28163d2e642bf6342ad43900cc91c5af12ed799_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/mysql-apb@sha256:abcc3f2d22048d5add1d4880b28163d2e642bf6342ad43900cc91c5af12ed799_amd64

…and 55 more

Timeline

  • Sep 7, 2022 CVE Published
  • Nov 21, 2025 CVE Updated
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Security Advisory
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›