CVE-2018-18623
Moderate
Grafana XSS in Dashboard Text Panel in github.com/grafana/grafana
Grafana XSS in Dashboard Text Panel in github.com/grafana/grafana
Exploit probability
1.8%
Published
August 21, 2024
Required by
Not available
Last source change
March 3, 2026
02 / AFFECTED SOFTWARE
Affected packages
2 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2018-18623
View original source
Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.
Open Source Vulnerabilities
GO-2022-0342
View original source
Grafana XSS in Dashboard Text Panel in github.com/grafana/grafana
Open Source Vulnerabilities
GHSA-cmq2-j8v8-2q44
View original source
Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.
05 / REFERENCES
Further evidence
- https://github.com/grafana/grafana/issues/15293
- https://github.com/grafana/grafana/pull/11813
- https://github.com/grafana/grafana/releases/tag/v6.0.0
- https://security.netapp.com/advisory/ntap-20200608-0008/
- https://github.com/advisories/GHSA-cmq2-j8v8-2q44
- https://github.com/grafana/grafana/issues/4117
- https://github.com/grafana/grafana/pull/14984
- https://nvd.nist.gov/vuln/detail/CVE-2018-18623
- https://security.netapp.com/advisory/ntap-20200608-0008