Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE Enterprise Storage 5: SUSE-SU-2020:2715-1 Moderate: grafana Stored XSS

suse
Calendar Grey September 22, 2020
Dist Suse Esm H88
SUSE Security Patch for grafana resolves moderate vulnerabilities such as persistent XSS. Update promptly for enhanced safeguarding.
An update that fixes one vulnerability is now available

Summary

This update for grafana fixes the following issues: - CVE-2020-11110: Fixed a stored XSS in dashboard snapshot original dashboard link (bsc#1174583). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Enterprise Storage 5: zypper in -t patch SUSE-Storage-5-2020-2715=1 Package List: - SUSE Enterprise Storage 5 (aarch64 x86_64): grafana-4.6.5-3.13.1 grafana-debuginfo-4.6.5-3.13.1 grafana-debugsource-4.6.5-3.13.1

References

#1174583

Cross- CVE-2020-11110

Affected Products:

SUSE Enterprise Storage 5

https://www.suse.com/security/cve/CVE-2020-11110.html

https://bugzilla.suse.com/1174583

Announcement ID: SUSE-SU-2020:2715-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here