Description
public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).
Remediation
References
Related Vulnerabilities
WordPress Plugin Font Uploader 'font-upload.php' Arbitrary File Upload (1.2.4)
Oracle JRE CVE-2013-0438 Vulnerability (CVE-2013-0438)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6612)
WordPress Plugin Editorial Calendar Multiple Vulnerabilities (2.6)