mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 04:38:03 +02:00
768 B
768 B
CVE-2020-12245
Description
Grafana before 6.7.3 allows table-panel XSS via column.title or cellLinkTooltip.
POC
Reference
- https://community.grafana.com/t/release-notes-v6-7-x/27119
- https://github.com/grafana/grafana/blob/master/CHANGELOG.md#673-2020-04-23
- https://github.com/grafana/grafana/pull/23816