Логотип exploitDog
bind:CVE-2026-27876
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-27876

Количество 4

Количество 4

redhat логотип

CVE-2026-27876

4 дня назад

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 9.1
EPSS: Низкий
nvd логотип

CVE-2026-27876

4 дня назад

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-27876

4 дня назад

A chained attack via SQL Expressions and a Grafana Enterprise plugin c ...

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-736h-475m-xhjc

4 дня назад

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-27876

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 9.1
0%
Низкий
4 дня назад
nvd логотип
CVE-2026-27876

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 9.1
0%
Низкий
4 дня назад
debian логотип
CVE-2026-27876

A chained attack via SQL Expressions and a Grafana Enterprise plugin c ...

CVSS3: 9.1
0%
Низкий
4 дня назад
github логотип
GHSA-736h-475m-xhjc

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlExpressions feature toggle enabled are vulnerable.

CVSS3: 9.1
0%
Низкий
4 дня назад

Уязвимостей на страницу