Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33380

Опубликовано: 13 мая 2026
Источник: debian

Описание

A vulnerability in SQL Expressions allows an authenticated attacker to read arbitrary files from the Grafana server's filesystem. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
grafanaremovedpackage

Связанные уязвимости

CVSS3: 6.3
ubuntu
3 месяца назад

A vulnerability in SQL Expressions allows an authenticated attacker to read arbitrary files from the Grafana server's filesystem. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 6.3
redhat
3 месяца назад

A vulnerability in SQL Expressions allows an authenticated attacker to read arbitrary files from the Grafana server's filesystem. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 6.3
nvd
3 месяца назад

A vulnerability in SQL Expressions allows an authenticated attacker to read arbitrary files from the Grafana server's filesystem. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 6.3
github
3 месяца назад

Grafana: SQL Expressions Read File From Disk

CVSS3: 6.3
fstec
3 месяца назад

Уязвимость функции sqlExpressions() платформы для мониторинга и наблюдения Grafana, позволяющая нарушителю читать произвольные файлы