Related Vulnerabilities: CVE-2022-24812  

A flaw was found in Grafana Enterprise. When the fine-grained access control beta feature is enabled, Grafana 8.1.0-beta1 introduces the Privilege Escalation vulnerability.

Description

A flaw was found in Grafana Enterprise. When the fine-grained access control beta feature is enabled, Grafana 8.1.0-beta1 introduces the Privilege Escalation vulnerability.

Statement

Red Hat products do not ship the Grafana Enterprise version, therefore are not affected by this vulnerability.

Red Hat products do not ship the Grafana Enterprise version, therefore are not affected by this vulnerability.

Additional Information

  • Bugzilla 2072429: CVE-2022-24812 grafana: Privilege Escalation in grafana enterprise
  • CWE-273: Improper Check for Dropped Privileges
  • FAQ: Frequently asked questions about CVE-2022-24812