CVE-2018-12099: Grafana

Medium severity, CVSS 6.1. EPSS: 2.1% chance of exploitation in the next 30 days.

Grafana before 5.2.0-beta1 has XSS vulnerabilities in dashboard links.

Affected products

  • Grafana Grafana: up to and including 5.1.3
  • Netapp Active Iq Performance Analytics Services: affected versions not specified
  • Netapp Storagegrid Webscale NAS Bridge: affected versions not specified

Published 2018-06-11. Last modified 2026-06-17.