Prometheus, as used in grafana, needs updating to fix security vulnerabilities. "[SECURITY] Security upgrade from go and upstream dependencies that include security fixes to the net/http and os packages. #11691" Please bump to 2.40.6. https://bugs.gentoo.org/885109 https://github.com/prometheus/prometheus/releases/tag/v2.40.6
Marked low as there's no CVE fixes listed in any of the github reports.
Created grafana tracking bugs for this issue: Affects: fedora-36 [bug 2155616] Affects: fedora-37 [bug 2155617]