Количество 574
Количество 574
CVE-2026-28376
The Grafana Live push endpoint can be exploited to cause unbounded mem ...
CVE-2026-28375
A testdata data-source can be used to trigger out-of-memory crashes in Grafana.
CVE-2026-28375
A testdata data-source can be used to trigger out-of-memory crashes in Grafana.
CVE-2026-28375
A testdata data-source can be used to trigger out-of-memory crashes in Grafana.
CVE-2026-28375
A testdata data-source can be used to trigger out-of-memory crashes in ...
CVE-2026-28374
Editors could delete any annotation, even those they do not have read access to. The editor user cannot create or read the annotations.
CVE-2026-28374
Editors could delete any annotation, even those they do not have read access to. The editor user cannot create or read the annotations.
CVE-2026-28374
Editors could delete any annotation, even those they do not have read access to. The editor user cannot create or read the annotations.
CVE-2026-28374
Editors could delete any annotation, even those they do not have read ...
CVE-2026-27880
The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes.
CVE-2026-27880
The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes.
CVE-2026-27880
The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes.
CVE-2026-27880
The OpenFeature feature toggle evaluation endpoint reads unbounded val ...
CVE-2026-27879
A resample query can be used to trigger out-of-memory crashes in Grafana.
CVE-2026-27879
A resample query can be used to trigger out-of-memory crashes in Grafana.
CVE-2026-27879
A resample query can be used to trigger out-of-memory crashes in Grafana.
CVE-2026-27879
A resample query can be used to trigger out-of-memory crashes in Grafa ...
CVE-2026-27877
When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security.
CVE-2026-27877
When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security.
CVE-2026-27877
When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-28376 The Grafana Live push endpoint can be exploited to cause unbounded mem ... | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-28375 A testdata data-source can be used to trigger out-of-memory crashes in Grafana. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-28375 A testdata data-source can be used to trigger out-of-memory crashes in Grafana. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-28375 A testdata data-source can be used to trigger out-of-memory crashes in Grafana. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-28375 A testdata data-source can be used to trigger out-of-memory crashes in ... | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-28374 Editors could delete any annotation, even those they do not have read access to. The editor user cannot create or read the annotations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-28374 Editors could delete any annotation, even those they do not have read access to. The editor user cannot create or read the annotations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-28374 Editors could delete any annotation, even those they do not have read access to. The editor user cannot create or read the annotations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-28374 Editors could delete any annotation, even those they do not have read ... | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-27880 The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-27880 The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-27880 The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-27880 The OpenFeature feature toggle evaluation endpoint reads unbounded val ... | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-27879 A resample query can be used to trigger out-of-memory crashes in Grafana. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-27879 A resample query can be used to trigger out-of-memory crashes in Grafana. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-27879 A resample query can be used to trigger out-of-memory crashes in Grafana. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-27879 A resample query can be used to trigger out-of-memory crashes in Grafa ... | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-27877 When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-27877 When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-27877 When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used in dashboards. No passwords of proxied data-sources are exposed. We encourage all direct data-sources to be converted to proxied data-sources as far as possible to improve your deployments' security. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу