An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 0.3% on proxy.golang.org
Top 0.8% dependent packages on proxy.golang.org
Top 0.8% dependent repos on proxy.golang.org
Top 0.1% forks on proxy.golang.org
Top 0.1% docker downloads on proxy.golang.org

proxy.golang.org : github.com/grafana/grafana

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

Registry - Source - Documentation - JSON
purl: pkg:golang/github.com/grafana/grafana
Keywords: alerting , analytics , business-intelligence , dashboard , data-visualization , elasticsearch , go , grafana , hacktoberfest , influxdb , metrics , monitoring , mysql , postgres , prometheus
License: Apache-2.0
Latest release: about 6 years ago
First release: about 2 years ago
Namespace: github.com/grafana
Dependent packages: 37
Dependent repositories: 50
Stars: 54,501 on GitHub
Forks: 10,613 on GitHub
Docker dependents: 349
Docker downloads: 4,972,822,239
See more repository details: repos.ecosyste.ms
Last synced: about 20 hours ago

Critical
GSA_kwCzR0hTQS1xOTltLXFjdjQtZnBtN84ABAao
Grafana Command Injection And Local File Inclusion Via Sql Expressions
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: 7 months ago
Moderate
GSA_kwCzR0hTQS12NWdxLXF2anEtOHA1M84AA4-4
Grafana Cross-site Scripting (XSS)
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
Moderate
GSA_kwCzR0hTQS03cGhyLTZjYzktNG01cc4AAhJF
Grafana Cross-site Scripting vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdjOXctd3ZxMi1mZm05
Server Side Request Forgery in Grafana
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 3 years ago
Moderate
GSA_kwCzR0hTQS0zY2d3LWhmdzctd2M3as4AAyPm
Duplicate Advisory: Grafana Stored Cross-site Scripting vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 2 years ago
Withdrawn: about 2 years ago
Moderate
GSA_kwCzR0hTQS13eGNjLTJmM3EtNGg1OM4ABEAD
Grafana Alerting VictorOps integration could be exposed to users with Viewer permission
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: 4 months ago
Moderate
GSA_kwCzR0hTQS1oaDhwLTM3NGYtcWdyNc4AA-z7
Grafana plugin data sources vulnerable to access control bypass
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: 9 months ago
High
GSA_kwCzR0hTQS1wOTc4LTU2aHEtcjQ5Ms4AA8Ex
Grafana folders admin only permission privilege escalation
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS03bTJ4LXFocnEtcnA4aM4AAkx7
Grafana XSS via the OpenTSDB datasource
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
Low
GSA_kwCzR0hTQS02NmM0LTJnMnYtNTRxd84ABAyx
Grafana org admin can delete pending invites in different org
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: 7 months ago
Moderate
GSA_kwCzR0hTQS14YzNwLTI4aHctcTI0Z84AA8Ek
Grafana proxy Cross-site Scripting
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS00NzI0LTdqd2MtM2Zwd84AA8Es
Grafana Spoofing originalUrl of snapshots
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS0zcDYyLTQyeDctZ3hnNc4AA8Et
Grafana User enumeration via forget password
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS1mdzljLTc1aGgtODlwNs4AA2ds
Grafana privilege escalation vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
Moderate
GSA_kwCzR0hTQS03cnFnLWhqd2MtNm1qZs4AAx5U
Grafana vulnerable to Stored Cross-site Scripting in Text plugin
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS1qdjMyLTU1NzgtcHhqY84AA8Ep
Grafana Data source and plugin proxy endpoints leaking authentication tokens to some destination plugins
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS14Mnc0LWM2N3AtZzQ0as4AAzsV
Grafana Missing Synchronization vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1oanY5LWhtMmYtcnBjas4AAx5P
Grafana vulnerable to Cross-site Scripting
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS1xcnJnLWd3N3ctdnA3Ns4AAyQj
Grafana Stored Cross-site Scripting in Graphite FunctionDescription tooltip
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS13bTdyLTNxeGotNXhncc4AAzsP
Duplicate Advisory: Grafana Improper Access Control vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: almost 2 years ago
Withdrawn: almost 2 years ago
Critical
GSA_kwCzR0hTQS12cWM0LW1wajgtanhjaM4AA8Er
Grafana Race condition allowing privilege escalation
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Critical
GSA_kwCzR0hTQS1tcHdwLTQyeDYtNHdteM4AA8Eh
Grafana Fine-grained access control vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS00cHdwLWN4NjctNWNweM4AA6O3
Grafana Arbitrary File Read
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
Moderate
GSA_kwCzR0hTQS1najdtLTg1M3ItMjg5cs4AA8Ev
Grafana when using email as a username can block other users from signing in
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Low
GSA_kwCzR0hTQS04d2poLTU5Y3ctOXhoNM4AA8Ej
Grafana Forward OAuth Identity Token can allow users to access some data sources
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS0zaHY0LXIyZm0taDI3Zs4AA5Rd
Email Validation Bypass And Preventing Sign Up From Email's Owner
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
High
GSA_kwCzR0hTQS1xNTNxLWd4cTktbWdyas4ABIOf
Grafana Cross-Site-Scripting (XSS) via custom loaded frontend plugin
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: 2 days ago
High
GSA_kwCzR0hTQS0zanE3LThwaDgtNjN4bc4AAkkw
Grafana information disclosure
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
Moderate
GSA_kwCzR0hTQS14NWZoLWZ2dnItODkyZs4AAUas
Grafana XSS Vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
High
GSA_kwCzR0hTQS1teDQ3LTY0OTctM2Z2Ms4AA8En
Grafana account takeover via OAuth vulnerability
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS14NzQ0LW1tOHYtdnBncs4AA8Ew
Grafana Data source and plugin proxy endpoints could leak the authentication cookie to some destination plugins
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS1tMjVtLTU3NzgtZm0yMs4AAkkj
Grafana world readable configuration files
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJnamctNjZjeC01eDlt
Grafana Authentication Bypass
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 3 years ago
Moderate
GSA_kwCzR0hTQS1jY21nLXc0eG0tcDI4ds4AAkhM
Grafana XSS in header column rename
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
High
GSA_kwCzR0hTQS0yeDZnLWgyaGctcnE4NM4AA8Eu
Grafana Email addresses and usernames can not be trusted
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS1yaHhqLWdoNDYtanZ3OM4AA8Eo
Grafana Plugin signature bypass
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS02N3J2LXFwdzItNnFycs4AA6qo
Grafana: Users outside an organization can delete a snapshot with its key
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS14dzVwLWh3OGoteGc0cc4AAx5O
Grafana vulnerable to Cross-site Scripting
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS03NTMzLWM4cXYtam05bc4AA8Ei
Grafana directory traversal for .cvs files
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS1mZjVjLTkzOHctOGM5cc4AA8Eq
Grafana Escalation from admin to server admin when auth proxy is used
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS1taDdwLThtMmYtcXJtNs4AA6S8
Duplicate Advisory: Grafana vulnerable to authorization bypass
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Withdrawn: about 1 year ago
Moderate
GSA_kwCzR0hTQS1jbXEyLWo4djgtMnE0NM4AA48-
Grafana XSS in Dashboard Text Panel
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
High
GSA_kwCzR0hTQS01bXhmLTQyZjUtajc4Ms4AA503
Grafana's users with permissions to create a data source can CRUD all data sources
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS14cjN4LTYycXctdmM0d84AAldo
Grafana stored XSS
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
High
GSA_kwCzR0hTQS04cGp4LWpqODYtajQ3cM4AA4-8
Grafana path traversal
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
Moderate
GSA_kwCzR0hTQS12dzdxLXAycWctNG01Zs4AA8El
Grafana Stored Cross-site Scripting in Unified Alerting
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg1cmgtdzZ2bS05Z2hj
Denial of service in Grafana
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 3 years ago
Moderate
GSA_kwCzR0hTQS05aHY4LTRmcmYtY3ByZs4AAk0G
Grafana XSS via a column style
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
Moderate
GSA_kwCzR0hTQS1tdnByLXE2cmgtOHZycM4AAmcL
Grafana XSS via a query alias for the ElasticSearch datasource
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 3 years ago
Critical
GSA_kwCzR0hTQS1tcHYzLWc4bTMtM2ZqY84AA0AQ
Grafana vulnerable to Authentication Bypass by Spoofing
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: almost 2 years ago
High
GSA_kwCzR0hTQS02OWo2LTI5dnItcDNqOc0WKA
Authentication bypass for viewing and deletions of snapshots
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 3 years ago
Moderate
GSA_kwCzR0hTQS02d2gyLThodzctanc5NM4AA48_
Grafana XSS via adding a link in General feature
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: over 1 year ago
Moderate
GSA_kwCzR0hTQS1jdm0zLXBwMmotY2hyM84AAzyX
Grafana has Broken Access Control in Alert manager: Viewer can send test alerts
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS02M2czLTlqcTMtbWNjds4AA8Em
Grafana API IDOR
Ecosystems: go
Packages: github.com/grafana/grafana
Source: github
Published: about 1 year ago