GHSA-3j8x-8x9q-3m4r
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write external alert instances to also write alert rules.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: November 25, 2025 6:29 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.