{
  "document": {
    "aggregate_severity": {
      "text": "Medium"
    },
    "category": "csaf_vex",
    "csaf_version": "2.0",
    "distribution": {
      "text": "TuxCare License Agreement",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Cloud Linux Inc. and provide a link to the original.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://tuxcare.com/contact/",
      "name": "TuxCare",
      "namespace": "https://tuxcare.com/"
    },
    "references": [
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.tuxcare.com/csaf/v2/els_os/tuxcare9.6esu/vex/2022/cve-2022-23552-els_os-tuxcare9_6esu.json"
      }
    ],
    "tracking": {
      "current_release_date": "2026-04-13T09:05:06Z",
      "generator": {
        "date": "2026-04-13T09:05:06Z",
        "engine": {
          "name": "pyCSAF"
        }
      },
      "id": "CVE-2022-23552-ELS_OS-TUXCARE9.6ESU",
      "initial_release_date": "2022-01-01T00:00:00Z",
      "revision_history": [
        {
          "date": "2022-01-01T00:00:00Z",
          "number": "1",
          "summary": "Initial version"
        },
        {
          "date": "2026-04-13T09:05:06Z",
          "number": "2",
          "summary": "Official Publication"
        }
      ],
      "status": "final",
      "version": "2"
    },
    "title": "Security update on CVE-2022-23552"
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "AlmaLinux 9.6",
                "product": {
                  "name": "AlmaLinux 9.6",
                  "product_id": "AlmaLinux-9.6",
                  "product_identification_helper": {
                    "cpe": "cpe:2.3:o:almalinux:almalinux:9.6:*:*:*:*:*:*:*"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "AlmaLinux"
          }
        ],
        "category": "vendor",
        "name": "AlmaLinux OS Foundation"
      },
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Rocky Linux 9.6",
                "product": {
                  "name": "Rocky Linux 9.6",
                  "product_id": "Rocky Linux-9.6",
                  "product_identification_helper": {
                    "cpe": "cpe:2.3:o:resf:rocky_linux:9.6:*:*:*:*:*:*:*"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Rocky Linux"
          }
        ],
        "category": "vendor",
        "name": "Rocky Linux"
      },
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version",
                "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
                "product": {
                  "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
                  "product_id": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana-selinux@10.2.6-15.el9_6.tuxcare.els3?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
                "product": {
                  "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
                  "product_id": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana-selinux@10.2.6-15.el9_6.tuxcare.els5?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
                "product": {
                  "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
                  "product_id": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana-selinux@10.2.6-15.el9_6.tuxcare.els6?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
                "product": {
                  "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
                  "product_id": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana-selinux@10.2.6-15.el9_6.tuxcare.els2?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
                "product": {
                  "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
                  "product_id": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana-selinux@10.2.6-15.el9_6.tuxcare.els4?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
                "product": {
                  "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
                  "product_id": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana-selinux@10.2.6-15.el9_6.tuxcare.els1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
                "product": {
                  "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
                  "product_id": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana@10.2.6-15.el9_6.tuxcare.els1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
                "product": {
                  "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
                  "product_id": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana@10.2.6-15.el9_6.tuxcare.els2?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
                "product": {
                  "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
                  "product_id": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana@10.2.6-15.el9_6.tuxcare.els6?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
                "product": {
                  "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
                  "product_id": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana@10.2.6-15.el9_6.tuxcare.els5?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
                "product": {
                  "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
                  "product_id": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana@10.2.6-15.el9_6.tuxcare.els4?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
                "product": {
                  "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
                  "product_id": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/grafana@10.2.6-15.el9_6.tuxcare.els3?arch=x86_64"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "x86_64"
          }
        ],
        "category": "vendor",
        "name": "TuxCare"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64"
        },
        "product_reference": "grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64"
        },
        "product_reference": "grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2022-23552",
      "cwe": {
        "id": "CWE-79",
        "name": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')"
      },
      "notes": [
        {
          "category": "description",
          "text": "Grafana is an open-source platform for monitoring and observability. Starting with the 8.1 branch and prior to versions 8.5.16, 9.2.10, and 9.3.4, Grafana had a stored XSS vulnerability affecting the core plugin GeoMap. The stored XSS vulnerability was possible because SVG files weren't properly sanitized and allowed arbitrary JavaScript to be executed in the context of the currently authorized user of the Grafana instance. \n\nAn attacker needs to have the Editor role in order to change a panel to include either an external URL to a SVG-file containing JavaScript, or use the `data:` scheme to load an inline SVG-file containing JavaScript. This means that vertical privilege escalation is possible, where a user with Editor role can change to a known password for a user having Admin role if the user with Admin role executes malicious JavaScript viewing a dashboard.   \n\nUsers may upgrade to version 8.5.16, 9.2.10, or 9.3.4 to receive a fix.",
          "title": "Vulnerability description"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "under_investigation": [
          "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
          "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
          "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
          "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
          "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
          "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
          "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
          "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
          "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
          "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
          "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
          "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
          "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
          "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
          "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
          "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
          "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
          "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
          "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
          "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
          "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
          "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
          "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
          "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://cve.tuxcare.com/els/cve/CVE-2022-23552"
        },
        {
          "category": "external",
          "summary": "https://github.com/grafana/grafana/commit/1c8a50b36973bd59a1cc5f34c30de8a9a6a431f0",
          "url": "https://github.com/grafana/grafana/commit/1c8a50b36973bd59a1cc5f34c30de8a9a6a431f0"
        },
        {
          "category": "external",
          "summary": "https://github.com/grafana/grafana/commit/8b574e22b53aa4c5a35032a58844fd4aaaa12f5f",
          "url": "https://github.com/grafana/grafana/commit/8b574e22b53aa4c5a35032a58844fd4aaaa12f5f"
        },
        {
          "category": "external",
          "summary": "https://github.com/grafana/grafana/commit/c022534e3848a5d45c0b3face23b43aa44e4400a",
          "url": "https://github.com/grafana/grafana/commit/c022534e3848a5d45c0b3face23b43aa44e4400a"
        },
        {
          "category": "external",
          "summary": "https://github.com/grafana/grafana/pull/62143",
          "url": "https://github.com/grafana/grafana/pull/62143"
        },
        {
          "category": "external",
          "summary": "https://github.com/grafana/grafana/security/advisories/GHSA-8xmm-x63g-f6xv",
          "url": "https://github.com/grafana/grafana/security/advisories/GHSA-8xmm-x63g-f6xv"
        },
        {
          "category": "external",
          "summary": "https://security.netapp.com/advisory/ntap-20230302-0008/",
          "url": "https://security.netapp.com/advisory/ntap-20230302-0008/"
        }
      ],
      "release_date": "2023-01-27T23:15:00Z",
      "remediations": [
        {
          "category": "none_available",
          "details": "Affected",
          "product_ids": [
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 5.5,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "LOW",
            "integrityImpact": "LOW",
            "privilegesRequired": "LOW",
            "scope": "CHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N",
            "version": "3.1"
          },
          "products": [
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "AlmaLinux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "AlmaLinux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "Rocky Linux-9.6:grafana-0:10.2.6-15.el9_6.tuxcare.els6.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els3.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els4.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els5.x86_64",
            "Rocky Linux-9.6:grafana-selinux-0:10.2.6-15.el9_6.tuxcare.els6.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Moderate"
        }
      ]
    }
  ]
}