Description
Grafana before 7.1.0-beta 1 allows XSS via a query alias for the ElasticSearch datasource.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP-Print Cross-Site Request Forgery (2.51)
PostgreSQL Other Vulnerability (CVE-2002-1399)
PHP Out-of-bounds Write Vulnerability (CVE-2022-4900)
WordPress Plugin Job Board by BestWebSoft Cross-Site Scripting (1.0.0)
WordPress Plugin Ecwid Ecommerce Shopping Cart Cross-Site Request Forgery (6.10.23)