influxdbGHSA-w55x-q3gv-px85
InfluxDB Reflected Cross-site Scripting
Medium4.8CVE-2018-17572 · Published May 24, 2022 · updated Feb 1, 2024
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| github.com/influxdata/influxdb Go | < 0.9.6 | 0.9.6 |
Details and references
InfluxDB 0.9.5 has Reflected XSS in the admin panel via the Write Data module.
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-79
- Also known as
- CVE-2018-17572
More influxdb advisories
All| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| May 182021 | Improper Authentication in InfluxDB CVE-2019-20933Critical9.8fixed in 1.7.6 | Critical9.8 | 1.7.6 |