Known vulnerabilities in Grafana Labs Grafana

Vendor: Grafana Labs
Website: https://github.com/grafana
Total Security Bulletins: 64

Security bulletins (64)

Secuity bulletin Severity Status Published
SB2026022533: Authorization bypass in Grafana datasource deletion Low
Patched
25.02.2026
SB2026021238: Multiple vulnerabilities in Grafana Low
Patched
12.02.2026
SB2026020361: Improper access control in Grafana Low
Patched
03.02.2026
SB2026013061: Multiple vulnerabilities in Grafana Medium
Patched Public exploit
30.01.2026
SB2025080425: Authorization bypass through user-controlled key in Grafana Low
Patched
04.08.2025
SB2025072114: Multiple vulnerabilities in Grafana Medium
Patched
21.07.2025
SB2025072113: Information disclosure in Grafana Medium
Patched
21.07.2025
SB2025061829: Browser denial of service in Grafana Low
Patched
18.06.2025
SB2025060322: Improper Authorization in Grafana Medium
Patched
03.06.2025
SB2025060314: Improper Authorization in Grafana Medium
Patched
03.06.2025
SB2025052748: Improper access control in Grafana Low
Patched
27.05.2025
SB2025052230: Cross-site scripting in Grafana Low
Patched Public exploit
22.05.2025
SB2025020329: Information disclosure in Grafana Medium
Patched
03.02.2025
SB20241022375: Improper access control in Grafana Low
Patched
22.10.2024
SB2024101803: Remote code execution in Grafana SQL Expressions Medium
Patched Public exploit
18.10.2024
SB2024081534: Reflected XSS in Grafana Medium
Patched
15.08.2024
SB2024050715: Email verification bypass in Grafana Low
Patched
07.05.2024
SB2024032711: Improper Authorization in Grafana Medium
Patched
27.03.2024
SB2024031121: Improper access control in Grafana Medium
Patched
11.03.2024
SB2023101664: Security restrictions bypass in Grafana Low
Patched
16.10.2023


Showing elements 1 - 20 out of 64