Medium severityNVD Advisory· Published Sep 26, 2024· Updated Apr 15, 2026
CVE-2024-8118
CVE-2024-8118
Description
In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write external alert instances to also write alert rules.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.