Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
CVE-2020-13430
See a problem?
Please try reporting it
to the source
first.
Source
https://cve.org/CVERecord?id=CVE-2020-13430
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-13430.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2020-13430
Aliases
BIT-grafana-2020-13430
GHSA-7m2x-qhrq-rp8h
GO-2024-2515
Downstream
ECHO-2387-cb23-dd37
RHSA-2020:2796
RHSA-2020:2861
RHSA-2020:4682
UBUNTU-CVE-2020-13430
Related
ALSA-2020:4682
Published
2020-05-24T18:15:10.097Z
Modified
2026-05-16T03:55:56.415928882Z
Severity
6.1 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Grafana before 7.0.0 allows tag value XSS via the OpenTSDB datasource.
References
https://github.com/grafana/grafana/releases/tag/v7.0.0
https://security.netapp.com/advisory/ntap-20200528-0003/
https://github.com/grafana/grafana/pull/24539
Affected packages
CVE-2020-13430 - OSV