Revisions of grafana
Gayane Osipyan (gosipyan)
accepted
request 1001298
from
Darragh O'Reilly (doreilly)
(revision 19)
- Add CVE-2021-39226.patch (bsc#1191454, CVE-2021-39226) * snapshot authentication bypass
Jan Zerebecki (jzerebecki)
accepted
request 970133
from
Darragh O'Reilly (doreilly)
(revision 18)
- Bump Go to 1.16 (bsc#1193597, CVE-2021-44716) * Fix Go net/http: limit growth of header canonicalization cache. Probably depends on https://build.opensuse.org/request/show/969177
Jeremy Moffitt (jeremy_moffitt)
accepted
request 885702
from
Johannes Grassler (jgrassler)
(revision 17)
- Add CVE-2021-27358.patch (bsc#1183803, CVE-2021-27358) * Prevent unauthenticated remote attackers from causing a DoS through the snapshots API.
Johannes Grassler (jgrassler)
accepted
request 850567
from
Jan Zerebecki (jzerebecki)
(revision 16)
- Fix bsc#1178243 CVE-2020-24303 by adding 25401-Fix-XSS-vulnerability-with-series-overrides.patch
Johannes Grassler (jgrassler)
committed
(revision 15)
Second round of change log fixes.
Johannes Grassler (jgrassler)
committed
(revision 14)
Trim change log for 6.7.4 down to a sensible length.
Johannes Grassler (jgrassler)
committed
(revision 13)
- BuildRequire go1.14 explicitly
Johannes Grassler (jgrassler)
committed
(revision 12)
Fix change log inconsistencies.
Johannes Grassler (jgrassler)
committed
(revision 11)
osc copypac from project:Cloud:OpenStack:Rocky package:grafana revision:13, using keep-link, using expand
Johannes Grassler (jgrassler)
accepted
request 811876
from
Johannes Grassler (jgrassler)
(revision 10)
- Add CVE-2020-13379.patch * Security: fix unauthorized avatar proxying (bsc#1172409, CVE-2020-13379) - Refresh systemd-notification.patch - Fix declaration for LICENSE
Flávio Ramalho (flaviosr)
accepted
request 799977
from
Nanuk Krinner (nkrinner)
(revision 9)
- Add 0002-CVE-2020-12052-bsc1170657-XSS-annotation-popup-vulnerability.patch * Security: Fix annotation popup XSS vulnerability (bsc#1170657)
Jeremy Moffitt (jeremy_moffitt)
accepted
request 743594
from
Jeremy Moffitt (jeremy_moffitt)
(revision 8)
- Add CVE-2019-15043.patch (SOC-10357, CVE-2019-15043, bsc#11483483)
Dirk Mueller (dirkmueller)
committed
(revision 7)
- Add CVE-2019-15043.patch (SOC-10357) * Adds authentication to a few rest endpoints see: https://github.com/grafana/grafana/compare/v5.4.4...v5.4.5
Dirk Mueller (dirkmueller)
accepted
request 726765
from
Sumit Jamgade (sjamgade)
(revision 6)
- Update to version 4.6.5: * release 4.6.5 CVE-2018-19039 (jsc#SOC-9976) File Exfiltration vulnerability Security fix * Updated version to 4.6.4. CVE-2018-558213/CVE-2018-558213 (jsc#SOC-9980) Important fix for LDAP & OAuth login vulnerability * Updated version to 4.6.4. * sql: added code migration type * release 4.6.3 * fix default alias * fixes broken alert eval when first condition is using OR * fix: alert list panel now works correctly after adding manual annotation on dashboard, fixes #9951 * fix: fix for avatar images when gzip is turned on, fixes #5952 * sets version to 4.6.2 * prom: add support for default step param (#9866) * build: fixed jshint error * fix: Html escaping caused issue in InfluxDB query editor, could not pick greater than or less then operators, fixes #9871 * heatmap: fix tooltip in "Time series bucket" mode, #9332 (#9867) * fix cloudwatch ec2_instance_attribute (#9718) * colorpicker: fix color string change #9769 (#9780) * changes version to 4.6.1 * fix: panel view now wraps, no scrolling required, fixes #9746 * plugins: fix for loading external plugins behind auth proxy, fixes #9509 * fix: color picker bug at series overrides page, #9715 (#9738) * tech: switch to golang 1.9.2 * tech: add missing include * save as should only delete threshold for panels with alerts * fix: graphite annotation tooltip included undefined, fixes #9707 * build: updated version to v4.6.0
Alberto Planas Dominguez (aplanas)
accepted
request 618102
from
Jan Zerebecki (jzerebecki)
(revision 5)
- Add 0001-fix-XSS-vulnerabilities-in-dashboard-links.patch (bsc#1096985)
Dirk Mueller (dirkmueller)
committed
(revision 4)
Copypac from Newton as the release based on Pike never included this newer version of grafana but instead still contains this exact one from Newton.
Thomas Bechtold (tbechtold)
committed
(revision 3)
osc copypac from project:Cloud:OpenStack:Master package:grafana revision:2, using expand
Dirk Mueller (dirkmueller)
accepted
request 555040
from
Johannes Grassler (jgrassler)
(revision 2)
- Add systemd-notification.patch (sends systemd notification once Grafana is ready to serve since database migrations can take a few seconds). This fixes the following upstream issue: https://github.com/grafana/grafana/issues/10024 - mark %{_datadir}/%{name}/conf/defaults.ini as %conf instead of %doc, grafana-server won't start without this file. - Update to version 4.5.1: + New Features: * Table panel: Render cell values as links * Elasticsearch: Add ad hoc filters directly by clicking values * MySQL: New rich query editor with syntax highlighting * Prometheus: New rich query editor with syntax highlighting + Enhancements: * GitHub OAuth: Support for GitHub organizations with 100+ teams * Graphite: Calls to Graphite api /metrics/find now include time range * Graphite: Added new graphite 1.0 functions * Elasticsearch: Ad-hoc filters now use query phrase match filters + Breaking change: * InfluxDB/Elasticsearch: The panel & data source option named "Group by time interval" is now named "Min time interval" and does now always define a lower limit for the auto group by time. + Other changes: * InfluxDB: Change time range filter for absolute time ranges to be inclusive instead of exclusive * InfluxDB: Added paranthesis around tag filters in queries + Bug Fixes: - Modals: Maintain scroll position after opening/leaving modal - Templating: You cannot select data source variables as data source
Dirk Mueller (dirkmueller)
accepted
request 539859
from
Johannes Grassler (jgrassler)
(revision 1)
This package contains Grafana 4 (needed for Monasca)
Displaying all 19 revisions