Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9mfc-92xm-c5mf

Опубликовано: 13 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exploit this to trigger an out-of-memory condition, potentially causing a denial of service.

A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exploit this to trigger an out-of-memory condition, potentially causing a denial of service.

EPSS

Процентиль: 25%
0.00328
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
ubuntu
3 месяца назад

A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exploit this to trigger an out-of-memory condition, potentially causing a denial of service.

CVSS3: 6.5
redhat
3 месяца назад

A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exploit this to trigger an out-of-memory condition, potentially causing a denial of service.

CVSS3: 6.5
nvd
3 месяца назад

A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exploit this to trigger an out-of-memory condition, potentially causing a denial of service.

CVSS3: 6.5
debian
3 месяца назад

A request to the Grafana plugin resources endpoint can cause unbounded ...

CVSS3: 6.5
fstec
3 месяца назад

Уязвимость плагина платформы для мониторинга и наблюдения Grafana, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 25%
0.00328
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770