blob: 38d3ac9d7b8ec8e5dd5936d6ae7a2a9127dc333c [file] [log] [blame]
id: GO-2024-2523
modules:
- module: github.com/grafana/grafana
non_go_versions:
- fixed: 6.7.2
vulnerable_at: 5.4.5+incompatible
summary: Grafana stored XSS in github.com/grafana/grafana
cves:
- CVE-2020-11110
ghsas:
- GHSA-xr3x-62qw-vc4w
references:
- advisory: https://github.com/advisories/GHSA-xr3x-62qw-vc4w
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2020-11110
- fix: https://github.com/grafana/grafana/commit/fb114a75241aaef4c08581b42509c750738b768a
- fix: https://github.com/grafana/grafana/pull/23254
- web: https://github.com/grafana/grafana/blob/master/CHANGELOG.md
- web: https://security.netapp.com/advisory/ntap-20200810-0002
source:
id: GHSA-xr3x-62qw-vc4w
created: 2024-08-16T16:03:22.619212-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE