turkdevops / grafana

The tool for beautiful monitoring and metric analytics & dashboards for Graphite, InfluxDB & Prometheus & More
https://grafana.com
Apache License 2.0
1 stars 0 forks source link

[Snyk] Security upgrade ubuntu from 14.04 to trusty-20190425 #444

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Changes included in this PR

We recommend upgrading to ubuntu:trusty-20190425, as this image has only 135 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
high severity 714 NULL Pointer Dereference
SNYK-UBUNTU1404-OPENSSL-1049144
No Known Exploit
high severity 886 Off-by-one Error
SNYK-UBUNTU1404-SUDO-1065770
Mature
medium severity 514 Arbitrary Command Injection
SNYK-UBUNTU1404-SUDO-406981
No Known Exploit
medium severity 686 Improper Handling of Exceptional Conditions
SNYK-UBUNTU1404-SUDO-473059
Mature
low severity 536 Out-of-bounds Write
SNYK-UBUNTU1404-SUDO-546522
Mature

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

mistaken-pull-closer[bot] commented 3 years ago

Thanks for your submission.

It appears that you've created a pull request using one of our repository's branches. Since this is almost always a mistake, we're going to go ahead and close this. If it was intentional, please let us know what you were intending and we can see about reopening it.

Thanks again!

pull-dog[bot] commented 3 years ago

*Ruff* :dog: I wasn't able to find any Docker Compose files in your repository at any of the given paths in the pull-dog.json configuration file, or the default docker-compose.yml file :weary: Make sure the given paths are correct.

Files checked:

What is this? Pull Dog is a GitHub app that makes test environments for your pull requests using Docker, from a `docker-compose.yml` file you specify. It takes 19 seconds to set up (we counted!) and there's a free plan available. Visit our website to learn more.
Commands - `@pull-dog up` to reprovision or provision the server. - `@pull-dog down` to delete the provisioned server.
Troubleshooting Need help? Don't hesitate to file an issue in our repository **Configuration** ```json { "isLazy": false, "dockerComposeYmlFilePaths": [ "docker-compose.yml" ], "expiry": "00:00:00", "conversationMode": "singleComment" } ``` **Trace ID** 4b7150c0-b4e5-11eb-94d0-b179baf59a8c
guardrails[bot] commented 3 years ago

:warning: We detected 130 security issues in this pull request:

Mode: paranoid | Total findings: 130 | Considered vulnerability: 0

Hard-Coded Secrets (57)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/models/datasource_cache_test.go#L412 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/app/features/datasources/partials/tls_auth_settings.html#L52 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/datasources/cloudmonitoring.md#L304 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-ui/src/components/DataSourceSettings/TLSAuthSettings.tsx#L79 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/.drone.yml#L1330 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/.drone.yml#L2086 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/.drone.yml#L2793 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/lib.star#L936 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/api/pluginproxy/test-data/access-token-2.json#L8 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/api/pluginproxy/test-data/access-token-1.json#L8 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/setting/setting_test.go#L85 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/setting/setting_test.go#L91 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L205 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L215 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L225 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L269 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L283 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L297 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L310 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L371 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L380 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L466 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L475 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L561 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L569 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/pkg/login/social/generic_oauth_test.go#L577 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/conf/defaults.ini#L82 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/conf/sample.ini#L84 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/CHANGELOG_ARCHIVE.md#L2240 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/user.md#L365 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/create-api-tokens-for-org.md#L25 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/create-api-tokens-for-org.md#L32 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/create-api-tokens-for-org.md#L37 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/create-api-tokens-for-org.md#L42 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/auth.md#L21 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/org.md#L336 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/org.md#L418 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/http_api/curl-examples.md#L20 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/docs/sources/administration/configuration.md#L295 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L399 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L1823 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L1989 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L2875 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L3434 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L3445 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L4736 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L4749 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/influxdb/telegraf.conf#L4784 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L12 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L27 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L30 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L42 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L84 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L111 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secrets**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/ha_test/alerts.sh#L117 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Password**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/graphite1/conf/opt/graphite/webapp/graphite/local_settings.py#L208 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/hard-coded_secrets.html?utm_source=ghpr) | Title: **Hard-coded Secret (*pass*)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/graphite/files/initial_data.json#L15 More info on how to fix Hard-Coded Secrets in [General](https://docs.guardrails.io/docs/en/vulnerabilities/general/hard-coded_secrets.html?utm_source=ghpr), [Python](https://docs.guardrails.io/docs/en/vulnerabilities/python/hard-coded_secrets.html?utm_source=ghpr) and [JavaScript](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/hard-coded_secrets.html?utm_source=ghpr). ---
Insecure File Management (39)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal require**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/Gruntfile.js#L56 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal fs filename**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-toolkit/bin/grafana-toolkit.js#L19 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal fs filename**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-toolkit/bin/grafana-toolkit.js#L32 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal require**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-toolkit/bin/grafana-toolkit.js#L49 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal fs filename**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-toolkit/docker/grafana-plugin-ci-alpine/install/bin/githubRelease.js#L42 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal fs filename**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-toolkit/docker/grafana-plugin-ci-alpine/install/bin/githubRelease.js#L47 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) | Title: **Use of non-literal fs filename**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/grafana-toolkit/docker/grafana-plugin-ci-alpine/install/bin/githubRelease.js#L48 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L55 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L82 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L83 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L84 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L85 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L86 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L87 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L88 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L89 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L90 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L91 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L92 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L93 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L94 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L95 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L96 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L97 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L98 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L99 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L114 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L115 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L116 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L141 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L142 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L143 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L168 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L174 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L175 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L176 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L182 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L242 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr) | Title: **Insecure Temp Files**, Severity: Informational
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L245 More info on how to fix Insecure File Management in [JavaScript](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/Insecure_file_management.html?utm_source=ghpr) and [Python](https://docs.guardrails.io/docs/en/vulnerabilities/python/Insecure_file_management.html?utm_source=ghpr). ---
Information Disclosure (3)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/information-disclosure.html?utm_source=ghpr) | Title: **Dynamic Placeholder Rule**, Severity: N/A
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/graphite/files/statsd_config.js#L3 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/information-disclosure.html?utm_source=ghpr) | Title: **Dynamic Placeholder Rule**, Severity: N/A
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/graphite1/conf/opt/statsd/config.js#L2 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/information-disclosure.html?utm_source=ghpr) | Title: **Dynamic Placeholder Rule**, Severity: N/A
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/webpack/webpack.common.js#L22 More info on how to fix Information Disclosure in [JavaScript](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/information-disclosure.html?utm_source=ghpr). ---
Insecure Use of Regular Expressions (8)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/packages/jaeger-ui-components/src/TraceTimelineViewer/SpanDetail/AccordianLogs.test.js#L59 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/vendor/angular-other/datepicker.js#L899 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/vendor/bootstrap/bootstrap.js#L1170 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/vendor/flot/jquery.flot.js#L32 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/vendor/tagsinput/bootstrap-tagsinput.js#L284 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/webpack/webpack.hot.js#L113 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/utils.py#L53 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_regular_expressions.html?utm_source=ghpr) | Title: **Regex DOS (ReDOS)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/utils.py#L54 More info on how to fix Insecure Use of Regular Expressions in [JavaScript](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_use_of_regular_expressions.html?utm_source=ghpr) and [Python](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_regular_expressions.html?utm_source=ghpr). ---
Insecure Use of Language/Framework API (1)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_language_framework_api.html?utm_source=ghpr) | Title: **Use of assert**, Severity: Low
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/devenv/docker/blocks/graphite/files/events_views.py#L46 More info on how to fix Insecure Use of Language/Framework API in [Python](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_language_framework_api.html?utm_source=ghpr). ---
Insecure Use of Dangerous Function (12)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L118 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L126 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L130 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L163 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L187 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L195 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L203 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L211 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L220 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L233 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L248 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr) | Title: **Potential OS Command Injection (os/popen2/commands)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/utils.py#L101 More info on how to fix Insecure Use of Dangerous Function in [Python](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_use_of_dangerous_function.html?utm_source=ghpr). ---
Insecure Processing of Data (3)
Docs | Details ----- | -------- [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_processing_of_data.html?utm_source=ghpr) | Title: **HTML escaping disabled (jinja2)**, Severity: Medium
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/build/ci-msi-build/msigenerator/generator/build.py#L319 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_processing_of_data.html?utm_source=ghpr) | Title: **Insecure Deserialization (gRPC)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/app/plugins/datasource/cloudwatch/utils/query/ScrollQLParser.js#L408 [:bulb:](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_processing_of_data.html?utm_source=ghpr) | Title: **Insecure Deserialization (gRPC)**, Severity: High
https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/public/app/plugins/datasource/cloudwatch/utils/query/ScrollQLLexer.js#L788 More info on how to fix Insecure Processing of Data in [Python](https://docs.guardrails.io/docs/en/vulnerabilities/python/insecure_processing_of_data.html?utm_source=ghpr) and [JavaScript](https://docs.guardrails.io/docs/en/vulnerabilities/javascript/insecure_processing_of_data.html?utm_source=ghpr). ---
Vulnerable Libraries (7)
Severity | Details ----- | -------- N/A | [github.com/dgrijalva/jwt-go@3.2.0](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/go.sum#L269) upgrade to `>= 4` N/A | [github.com/coreos/etcd@3.3.10](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/go.sum#L227) - **no patch available** N/A | [github.com/gogo/protobuf@1.3.1](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/go.sum#L495) upgrade to `>= 1.3.2.` N/A | [github.com/prometheus/prometheus@1.8.2-0.20200727090838-6f296594a852](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/go.sum#L1076) - **no patch available** N/A | [github.com/coreos/etcd@3.3.13](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/go/go.sum#L42) - **no patch available** N/A | [github.com/dgrijalva/jwt-go@3.2.0](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/go/go.sum#L57) upgrade to `>= 4` N/A | [github.com/gogo/protobuf@1.2.1](https://github.com/turkdevops/grafana/blob/a7f44722a8ae7c1ca85405b19fb22481a7ad0f6a/scripts/go/go.sum#L107) upgrade to `>= 1.3.2.` More info on how to fix Vulnerable Libraries in [Go](https://docs.guardrails.io/docs/en/vulnerabilities/go/using_vulnerable_libraries.html?utm_source=ghpr).

👉 Go to the dashboard for detailed results.

📥 Happy? Share your feedback with us.