Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-10226

Опубликовано: 24 апр. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-10226: grafana security update (IMPORTANT)

[10.2.6-20]

  • Resolves RHEL-161802: CVE-2026-27877

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

grafana

10.2.6-20.el9_7

grafana-selinux

10.2.6-20.el9_7

Oracle Linux x86_64

grafana

10.2.6-20.el9_7

grafana-selinux

10.2.6-20.el9_7

Связанные CVE

Связанные уязвимости

CVSS3: 6.5
ubuntu
3 месяца назад

When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security.

CVSS3: 7.5
redhat
3 месяца назад

When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security.

CVSS3: 6.5
nvd
3 месяца назад

When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security.

CVSS3: 6.5
debian
3 месяца назад

When using public dashboards and direct data-sources, all direct data- ...

CVSS3: 7.5
redos
23 дня назад

Уязвимость grafana