Description
Grafana Enterprise 7.2.x and 7.3.x before 7.3.10 and 7.4.x before 7.4.5 allows a dashboard editor to bypass a permission check concerning a data source they should not be able to access.
Remediation
References
Related Vulnerabilities
WordPress Plugin BuddyStream Multiple Cross-Site Scripting Vulnerabilities (2.6.2)
Oracle JRE CVE-2013-5787 Vulnerability (CVE-2013-5787)
OpenSSL NULL Pointer Dereference Vulnerability (CVE-2023-0217)
Oracle JRE CVE-2022-21626 Vulnerability (CVE-2022-21626)
Oracle Database Server CVE-2010-3600 Vulnerability (CVE-2010-3600)