-
Notifications
You must be signed in to change notification settings - Fork 32
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Grafana package used for upgrade_package_nonvulnerable_to_vulnerable case is vulnerable #5715
Closed
3 tasks done
Labels
Comments
I suggest using grafana-9.3.16 as non-vulnerable and grafana-9.4.1 as vulnerable, although it should be review if these packages are adequate. |
UpdateI have added the Grafana packages and modified the Test to use them. I need to add the URL to the packages so they can be used. I am moving the issue to |
3 tasks
This was referenced Sep 17, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Description
In the Release 4.9.0 - RC 2 - Vulnerability Detection E2E tests, it was identified that the Grafana package used in the
upgrade_package_nonvulnerable_to_vulnerable
test case is vulnerable to CVE-2022-23498. To address this, the package should be replaced with one that is not affected by any known vulnerabilities.Tasks
upgrade_package_nonvulnerable_to_vulnerable
test case package with another one with no vulnerabilities for Linux based agentsValidation
upgrade_package_nonvulnerable_to_vulnerable
test caseThe text was updated successfully, but these errors were encountered: