Description
Grafana before 7.1.0-beta 1 allows XSS via a query alias for the ElasticSearch datasource.
Remediation
References
Related Vulnerabilities
WordPress Plugin UserPro-Community and User Profile Privilege Escalation (4.9.27)
WordPress Plugin User Profile Picture Information Disclosure (2.4.0)
Apache HTTP Server NULL Pointer Dereference Vulnerability (CVE-2023-28625)
WordPress Plugin WPMovieLibrary Multiple Cross-Site Scripting Vulnerabilities (2.1.4.1)