Total vulnerabilities in the database
In Grafana 2.x through 6.x before 6.3.4, parts of the HTTP API allow unauthenticated use. This makes it possible to run a denial of service attack against the server running Grafana.
Software | From | Fixed in |
---|---|---|
grafana / grafana | 2.0.0 | 5.4.5 |
grafana / grafana | 6.0.0 | 6.3.4 |