Loading HuntDB...

GHSA-3j8x-8x9q-3m4r

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write external alert instances to also write alert rules.

Related CVEs

Key Information

GHSA ID
GHSA-3j8x-8x9q-3m4r
Published
September 26, 2024 9:31 PM
Last Modified
September 26, 2024 9:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.