[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2022-31123":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T20:55:33.689Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":27,"aliases":28,"duplicate_of":9,"upstream":32,"downstream":33,"duplicates":50,"related":51,"reserved_at":9,"published_at":62,"modified_at":63,"state":64,"summary":65,"references_raw":74,"kevs":107,"epss":108,"epss_history":111,"metrics":354,"affected":372},"CVE-2022-31123","Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-347","Improper Verification of Cryptographic Signature","The product does not verify, or incorrectly verifies, the cryptographic signature for data.","weakness","Draft","Base",[19,23],{"id":20,"name":21,"techniques":22},"CAPEC-463","Padding Oracle Crypto Attack",[],{"id":24,"name":25,"techniques":26},"CAPEC-475","Signature Spoofing by Improper Validation",[],[],[29,30,31],"GHSA-rhxj-gh46-jvw8","BIT-grafana-2022-31123","GO-2024-2855",[],[34,36,38,40,42,44,46,48],{"_key":35},"UBUNTU-CVE-2022-31123",{"_key":37},"SUSE-SU-2023:0352-1",{"_key":39},"SUSE-SU-2024:0191-1",{"_key":41},"SUSE-SU-2024:0196-1",{"_key":43},"SUSE-SU-2023:0353-1",{"_key":45},"SUSE-SU-2023:0362-1",{"_key":47},"OPENSUSE-SU-2024:12508-1",{"_key":49},"RHSA-2023:6420",[],[52,53,54,55,56,57,58,60],{"_key":37},{"_key":39},{"_key":41},{"_key":43},{"_key":45},{"_key":47},{"_key":59},"CGA-7H3J-28W8-86QW",{"_key":61},"CGA-33C9-V4G9-HXQ6","2022-10-13T00:00:00.000Z","2026-01-28T04:55:28.143Z","Modified",{"cisa_kev":66,"cisa_ransomware":66,"cisa_vendor":9,"epss_severity":67,"epss_score":68,"severity":69,"severity_score":70,"severity_version":71,"severity_source":72,"severity_vector":73,"severity_status":64},false,"low",0.00011,"high",7.8,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",[75,85,90,94,98,103],{"url":76,"sources":77,"tags":80},"https://github.com/grafana/grafana/security/advisories/GHSA-rhxj-gh46-jvw8",[78,72,79],"cve.org","osv_go",[81,82,83,84],"Patch","Third Party Advisory","WEB","Advisory",{"url":86,"sources":87,"tags":88},"https://github.com/grafana/grafana/releases/tag/v9.1.8",[78,72,79],[89,82,83],"Release Notes",{"url":91,"sources":92,"tags":93},"https://security.netapp.com/advisory/ntap-20221124-0002/",[78,72],[82],{"url":95,"sources":96,"tags":97},"https://nvd.nist.gov/vuln/detail/CVE-2022-31123",[79],[84],{"url":99,"sources":100,"tags":101},"https://github.com/grafana/grafana",[79],[102],"PACKAGE",{"url":104,"sources":105,"tags":106},"https://security.netapp.com/advisory/ntap-20221124-0002",[79],[83],[],{"date":109,"score":68,"percentile":110},"2026-06-04",0.01417,[112,115,118,121,124,127,130,133,136,138,141,144,147,149,152,156,159,162,165,168,171,174,177,180,183,186,189,192,195,198,201,203,206,208,210,213,216,218,221,224,227,229,232,234,236,239,241,244,246,248,251,253,255,257,261,263,266,269,272,274,277,279,281,283,285,287,289,292,295,297,299,302,305,308,311,313,316,319,322,325,328,331,333,335,337,340,342,345,348,351],{"date":113,"score":68,"percentile":114},"2025-11-04",0.00927,{"date":116,"score":68,"percentile":117},"2025-11-05",0.00937,{"date":119,"score":68,"percentile":120},"2025-11-06",0.00942,{"date":122,"score":68,"percentile":123},"2025-11-07",0.00944,{"date":125,"score":68,"percentile":126},"2025-11-08",0.00943,{"date":128,"score":68,"percentile":129},"2025-11-09",0.00941,{"date":131,"score":68,"percentile":132},"2025-11-10",0.00932,{"date":134,"score":68,"percentile":135},"2025-11-11",0.00934,{"date":137,"score":68,"percentile":135},"2025-11-12",{"date":139,"score":68,"percentile":140},"2025-11-13",0.00936,{"date":142,"score":68,"percentile":143},"2025-11-14",0.0094,{"date":145,"score":68,"percentile":146},"2025-11-15",0.00964,{"date":148,"score":68,"percentile":146},"2025-11-16",{"date":150,"score":68,"percentile":151},"2025-11-17",0.00961,{"date":153,"score":154,"percentile":155},"2025-11-18",0.00119,0.26097,{"date":157,"score":154,"percentile":158},"2025-11-19",0.26118,{"date":160,"score":154,"percentile":161},"2025-11-20",0.26126,{"date":163,"score":68,"percentile":164},"2025-11-21",0.01008,{"date":166,"score":68,"percentile":167},"2025-11-22",0.01003,{"date":169,"score":68,"percentile":170},"2025-11-23",0.00994,{"date":172,"score":68,"percentile":173},"2025-11-24",0.00993,{"date":175,"score":68,"percentile":176},"2025-11-25",0.0099,{"date":178,"score":68,"percentile":179},"2025-11-26",0.00923,{"date":181,"score":68,"percentile":182},"2025-11-27",0.00921,{"date":184,"score":68,"percentile":185},"2025-11-28",0.00928,{"date":187,"score":68,"percentile":188},"2025-11-29",0.0095,{"date":190,"score":68,"percentile":191},"2025-11-30",0.00959,{"date":193,"score":68,"percentile":194},"2025-12-01",0.00983,{"date":196,"score":68,"percentile":197},"2025-12-02",0.00977,{"date":199,"score":68,"percentile":200},"2025-12-03",0.00981,{"date":202,"score":68,"percentile":146},"2025-12-04",{"date":204,"score":68,"percentile":205},"2025-12-05",0.00975,{"date":207,"score":68,"percentile":197},"2025-12-06",{"date":209,"score":68,"percentile":200},"2025-12-07",{"date":211,"score":68,"percentile":212},"2025-12-08",0.00985,{"date":214,"score":68,"percentile":215},"2025-12-09",0.00998,{"date":217,"score":68,"percentile":164},"2025-12-10",{"date":219,"score":68,"percentile":220},"2025-12-11",0.01,{"date":222,"score":68,"percentile":223},"2025-12-12",0.00996,{"date":225,"score":68,"percentile":226},"2025-12-13",0.00984,{"date":228,"score":68,"percentile":194},"2025-12-14",{"date":230,"score":68,"percentile":231},"2025-12-15",0.0098,{"date":233,"score":68,"percentile":194},"2025-12-16",{"date":235,"score":68,"percentile":226},"2025-12-17",{"date":237,"score":68,"percentile":238},"2025-12-18",0.00976,{"date":240,"score":68,"percentile":200},"2025-12-19",{"date":242,"score":68,"percentile":243},"2025-12-20",0.00979,{"date":245,"score":68,"percentile":212},"2025-12-21",{"date":247,"score":68,"percentile":173},"2025-12-22",{"date":249,"score":68,"percentile":250},"2025-12-23",0.00989,{"date":252,"score":68,"percentile":176},"2025-12-24",{"date":254,"score":68,"percentile":173},"2025-12-25",{"date":256,"score":68,"percentile":170},"2025-12-26",{"date":258,"score":259,"percentile":260},"2025-12-27",0.00012,0.01207,{"date":262,"score":68,"percentile":173},"2025-12-28",{"date":264,"score":68,"percentile":265},"2025-12-29",0.00988,{"date":267,"score":68,"percentile":268},"2025-12-30",0.00986,{"date":270,"score":68,"percentile":271},"2025-12-31",0.00982,{"date":273,"score":68,"percentile":223},"2026-01-01",{"date":275,"score":68,"percentile":276},"2026-01-02",0.00992,{"date":278,"score":68,"percentile":215},"2026-01-03",{"date":280,"score":68,"percentile":197},"2026-01-04",{"date":282,"score":68,"percentile":200},"2026-01-05",{"date":284,"score":68,"percentile":243},"2026-01-06",{"date":286,"score":68,"percentile":200},"2026-01-07",{"date":288,"score":68,"percentile":176},"2026-01-08",{"date":290,"score":68,"percentile":291},"2026-01-09",0.01004,{"date":293,"score":68,"percentile":294},"2026-01-10",0.01009,{"date":296,"score":68,"percentile":164},"2026-01-11",{"date":298,"score":68,"percentile":294},"2026-01-12",{"date":300,"score":68,"percentile":301},"2026-01-13",0.01011,{"date":303,"score":68,"percentile":304},"2026-01-14",0.0101,{"date":306,"score":68,"percentile":307},"2026-01-15",0.01016,{"date":309,"score":68,"percentile":310},"2026-01-16",0.01024,{"date":312,"score":68,"percentile":310},"2026-01-17",{"date":314,"score":68,"percentile":315},"2026-01-18",0.01033,{"date":317,"score":68,"percentile":318},"2026-01-19",0.01034,{"date":320,"score":68,"percentile":321},"2026-01-20",0.01026,{"date":323,"score":68,"percentile":324},"2026-01-21",0.01021,{"date":326,"score":68,"percentile":327},"2026-01-22",0.01025,{"date":329,"score":68,"percentile":330},"2026-01-23",0.01035,{"date":332,"score":68,"percentile":315},"2026-01-24",{"date":334,"score":68,"percentile":315},"2026-01-25",{"date":336,"score":68,"percentile":330},"2026-01-26",{"date":338,"score":68,"percentile":339},"2026-01-27",0.01027,{"date":341,"score":68,"percentile":321},"2026-01-28",{"date":343,"score":68,"percentile":344},"2026-01-29",0.01029,{"date":346,"score":68,"percentile":347},"2026-01-30",0.01032,{"date":349,"score":68,"percentile":350},"2026-01-31",0.01041,{"date":352,"score":68,"percentile":353},"2026-02-01",0.01057,[355,362,367],{"source":78,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":356,"cvss_v4_0":9},{"baseScore":357,"baseSeverity":358,"vectorString":359,"impactScore":360,"exploitabilityScore":361},6.1,"MEDIUM","CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:L",9.2,1.5,{"source":72,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":363,"cvss_v4_0":9},{"baseScore":70,"baseSeverity":364,"vectorString":73,"impactScore":365,"exploitabilityScore":366},"HIGH",9.8,4.6,{"source":79,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":368,"cvss_v4_0":369},{"baseScore":357,"baseSeverity":9,"vectorString":359,"impactScore":360,"exploitabilityScore":361},{"baseScore":370,"baseSeverity":9,"vectorString":371,"impactScore":9,"exploitabilityScore":9},8.4,"CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N",[373,394,404],{"ecosystem":374,"name":375,"vendor":376,"product":377,"cpe_part":9,"purl_type":378,"purl_namespace":376,"purl_name":377,"source":9,"versions":379},"Go","github.com/grafana/grafana","github.com/grafana","grafana","golang",[380,388,392],{"version":381,"is_range":382,"range_type":383,"version_start":384,"version_start_type":385,"version_end":386,"version_end_type":387,"fixed_in":9},"gte9_0_0_lt9_1_8",true,"semver","9.0.0","including","9.1.8","excluding",{"version":389,"is_range":382,"range_type":383,"version_start":390,"version_start_type":385,"version_end":391,"version_end_type":387,"fixed_in":9},"gte7_0_0_lt8_5_14","7.0.0","8.5.14",{"version":393,"is_range":382,"range_type":383,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"all",{"ecosystem":9,"name":377,"vendor":377,"product":377,"cpe_part":395,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":396},"a",[397,399,402],{"version":398,"is_range":382,"range_type":78,"version_start":9,"version_start_type":9,"version_end":391,"version_end_type":387,"fixed_in":9},"lt8.5.14",{"version":400,"is_range":382,"range_type":401,"version_start":390,"version_start_type":385,"version_end":391,"version_end_type":387,"fixed_in":9},"gte7.0.0_lt8.5.14","cpe",{"version":403,"is_range":382,"range_type":401,"version_start":384,"version_start_type":385,"version_end":386,"version_end_type":387,"fixed_in":9},"gte9.0.0_lt9.1.8",{"ecosystem":9,"name":405,"vendor":406,"product":407,"cpe_part":395,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":408},"e-series performance analyzer","netapp","e-series_performance_analyzer",[409],{"version":410,"is_range":66,"range_type":401,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"na"]