Unauthorized Invite Deletion in Grafana by Admins
CVE-2024-10452
2.7LOW
What is CVE-2024-10452?
A significant security flaw in Grafana permits organization administrators to delete pending invites that were created in organizations to which they do not belong. This unauthorized access could lead to unintentional disruptions in user collaboration and may compromise the integrity of invite management within affected Grafana instances. Users are advised to apply the latest updates and review access controls to mitigate potential risks associated with this vulnerability.