The Pie Chart Panel plugin through 2019-01-02 for Grafana is vulnerable to XSS via legend data or tooltip data. When a chart is included in a Grafana dashboard, this vulnerability could allow an attacker to gain remote unauthenticated access to the dashboard.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-02-06T19:00:00

Updated: 2024-08-06T08:43:42.187Z

Reserved: 2019-02-06T00:00:00

Link: CVE-2015-9282

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-02-06T19:29:00.240

Modified: 2019-06-11T20:15:29.243

Link: CVE-2015-9282

cve-icon Redhat

No data.