UbuntuUpdates.org

Package "graphite-web"

Name: graphite-web

Description:

Enterprise Scalable Realtime Graphing

Latest version: 1.1.8-1ubuntu0.22.04.1
Release: jammy (22.04)
Level: security
Repository: universe
Homepage: https://github.com/graphite-project/graphite-web/

Links


Download "graphite-web"


Other versions of "graphite-web" in Jammy

Repository Area Version
base universe 1.1.8-1
updates universe 1.1.8-1ubuntu0.22.04.1

Changelog

Version: 1.1.8-1ubuntu0.22.04.1 2023-07-25 11:07:08 UTC

  graphite-web (1.1.8-1ubuntu0.22.04.1) jammy-security; urgency=medium

  * SECURITY UPDATE: XSS
    - debian/patches/CVE-2022-4728.patch: fixed XSS issues in Cookie Handler
      component (CVE-2022-4728), Template Name Handler component
      (CVE-2022-4729), and Absolute Time Range Handler component
      (CVE-2022-4730).
    - CVE-2022-4728
    - CVE-2022-4729
    - CVE-2022-4730

 -- Amir Naseredini <email address hidden> Tue, 18 Jul 2023 13:13:35 +0100

CVE-2022-4728 A vulnerability has been found in Graphite Web and classified as problematic. This vulnerability affects unknown code of the component Cookie Handler
CVE-2022-4729 A vulnerability was found in Graphite Web and classified as problematic. This issue affects some unknown processing of the component Template Name Ha
CVE-2022-4730 A vulnerability was found in Graphite Web. It has been classified as problematic. Affected is an unknown function of the component Absolute Time Rang



About   -   Send Feedback to @ubuntu_updates