MEDIUM

CVE-2019-13068

CVSS v3

5.4

MEDIUM

EPSS Score

7.7%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

Technical details

Published
6/30/2019

Frequently asked questions

What is CVE-2019-13068?

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

Is CVE-2019-13068 actively exploited?

Active exploitation of CVE-2019-13068 has not been confirmed. The EPSS score is 7.7%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2019-13068?

CVE-2019-13068 has a CVSS v3 base score of 5.4 (MEDIUM severity).

Is CVE-2019-13068 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.