Prometheus Web UI Stored XSS via Metric Names/Labels (CVE-2026-40179)
Security AdvisoryCVE-2026-40179MediumPrometheus
Affected:
- Prometheus >= 3.0 <=3.5.1
- Prometheus >= 3.6.0 <= 3.11.1
Fixed in:
- 3.11.2
- 3.5.2
Referenced CVEs: CVE-2026-40179
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.