Vulnerabilities > CVE-2024-10452 - Authorization Bypass Through User-Controlled Key vulnerability in Grafana 10.4.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
HIGH Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
Organization admins can delete pending invites created in an organization they are not part of.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |