Количество 23
Количество 23
RLSA-2026:58982
Moderate: grafana security, bug fix, and enhancement update
ELSA-2026-58982
ELSA-2026-58982: grafana security, bug fix, and enhancement update (MODERATE)
RLSA-2026:54178
Moderate: grafana security, bug fix, and enhancement update
ELSA-2026-54178
ELSA-2026-54178: grafana security, bug fix, and enhancement update (MODERATE)
CVE-2026-33376
When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here.
CVE-2026-33376
When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here.
CVE-2026-33376
When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here.
CVE-2026-33376
When using an IPv6 allow-list for the Auth Proxy feature, it defaults ...
CVE-2026-33377
An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege.
CVE-2026-33377
An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege.
CVE-2026-33377
An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege.
CVE-2026-33377
An Editor can overwrite a dashboard not owned by them to acquire admin ...
SUSE-SU-2026:3718-1
Security update for grafana
openSUSE-SU-2026:20940-1
Security update for grafana
GHSA-3r2p-7499-27q3
When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here.
BDU:2026-07040
Уязвимость функции Auth Proxy платформы для мониторинга и наблюдения Grafana, позволяющая нарушителю обойти ограничения безопасности
GHSA-5cv7-h7gr-wjgh
An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege.
BDU:2026-07034
Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с перезаписью списков контроля доступа, позволяющая нарушителю повысить свои привилегии
ROS-20260708-80-0035
Уязвимость grafana
ROS-20260708-73-0029
Уязвимость grafana
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:58982 Moderate: grafana security, bug fix, and enhancement update | 20 дней назад | |||
ELSA-2026-58982 ELSA-2026-58982: grafana security, bug fix, and enhancement update (MODERATE) | 22 дня назад | |||
RLSA-2026:54178 Moderate: grafana security, bug fix, and enhancement update | около 1 месяца назад | |||
ELSA-2026-54178 ELSA-2026-54178: grafana security, bug fix, and enhancement update (MODERATE) | около 1 месяца назад | |||
CVE-2026-33376 When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here. | CVSS3: 7.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-33376 When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here. | CVSS3: 7.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-33376 When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here. | CVSS3: 7.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-33376 When using an IPv6 allow-list for the Auth Proxy feature, it defaults ... | CVSS3: 7.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-33377 An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege. | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-33377 An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege. | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-33377 An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege. | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-33377 An Editor can overwrite a dashboard not owned by them to acquire admin ... | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
SUSE-SU-2026:3718-1 Security update for grafana | 21 день назад | |||
openSUSE-SU-2026:20940-1 Security update for grafana | 3 месяца назад | |||
GHSA-3r2p-7499-27q3 When using an IPv6 allow-list for the Auth Proxy feature, it defaults to /32 addresses. Addresses specifying a mask explicitly are not affected; to mitigate easily, add the desired mask (usually /128) to the addresses. Only auth proxy is affected; Okta, SAML, LDAP, etc are unaffected here. | CVSS3: 7.4 | 0% Низкий | 4 месяца назад | |
BDU:2026-07040 Уязвимость функции Auth Proxy платформы для мониторинга и наблюдения Grafana, позволяющая нарушителю обойти ограничения безопасности | CVSS3: 7.4 | 0% Низкий | 4 месяца назад | |
GHSA-5cv7-h7gr-wjgh An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege. | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
BDU:2026-07034 Уязвимость платформы для мониторинга и наблюдения Grafana, связанная с перезаписью списков контроля доступа, позволяющая нарушителю повысить свои привилегии | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
ROS-20260708-80-0035 Уязвимость grafana | CVSS3: 7.4 | 0% Низкий | 2 месяца назад | |
ROS-20260708-73-0029 Уязвимость grafana | CVSS3: 7.4 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу