Hi All,
Grafana released a security patch for a critical vulnerability CVE-2023-3128.
The fix is contained in version 8.5.27 ( current version is 8.5.15).
Is there a way to upgrade Grafana seperately from the whole Nabox setup?
https://grafana.com/blog/2023/06/22/grafana-security-release-for-cve-2023-3128/
https://nvd.nist.gov/vuln/detail/CVE-2023-3128
Is seems this CVE is only valid when using Azure AD, which we don't. The security office at my company still insists of upgrading grafana.
Thanks!