From c1d34c29c4a6b676c4004534171e0b7abe98eae00e691cf474d3b94f312ad014 Mon Sep 17 00:00:00 2001 From: Witek Bedyk Date: Tue, 23 Nov 2021 12:03:22 +0000 Subject: [PATCH] Accepting request 933254 from home:juliogonzalezgil:branches:server:monitoring For whatever reason the CVE was mentioned at the 7.5.11 release notes (https://grafana.com/docs/grafana/latest/release-notes/release-notes-7-5-11/), but was not added to the changelog. OBS-URL: https://build.opensuse.org/request/show/933254 OBS-URL: https://build.opensuse.org/package/show/server:monitoring/grafana?expand=0&rev=65 --- grafana.changes | 1 + 1 file changed, 1 insertion(+) diff --git a/grafana.changes b/grafana.changes index 40f08b0..e77c66b 100644 --- a/grafana.changes +++ b/grafana.changes @@ -8,6 +8,7 @@ Thu Nov 18 14:13:39 CET 2021 - ro@suse.de Wed Nov 17 23:32:21 UTC 2021 - ro@suse.de - Update to version 7.5.11: + * Fix Snapshot authentication bypass (bsc#1191454, CVE-2021-39226) * Fix certs issue (#40002) * Release v7.5.11 (#124) * Fix static path matching issue in macaron