Grafana Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-13068 - Vulnerability Database

Grafana Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-13068

Medium
Reference: CVE-2019-13068
Title: Grafana Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).