nurarifin05

1 exploit Active since Sep 2024
CVE-2024-8118 NOMISEC MEDIUM WORKING POC
Grafana 8.5.0-10.3.9, 10.4.0-10.4.8, 11.0.0-11.0.4, 11.1.0-11.1.5, 11.2.0 - Alert Rule Write API Permission Bypass
In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write external alert instances to also write alert rules.