Content Deep Dive
Grafana 8.2.4 released with security fixes
Blog post from Grafana Labs
Post Details
Company
Date Published
Author
Vardan Torosyan
Word Count
348
Language
English
Hacker News Points
-
Summary
Grafana 8.2.4 was released to address a security vulnerability affecting versions 8.0.0 to 8.2.3, specifically when the fine-grained access control beta feature is enabled and multiple organizations are involved. The flaw allowed users with the Organization Admin role to manage user roles across organizations where they are not admins. It is recommended that affected installations upgrade immediately or disable the beta feature to mitigate the risk. Grafana Cloud instances remain unaffected by this issue. For reporting security vulnerabilities, Grafana Labs encourages encrypted communication via their PGP key, with details available on their blog and through an RSS feed.