[WID-SEC-2026-3355] Grafana: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen und Offenlegung von Informationen CVSS Base Score 7.1 (hoch) CVSS Temporal Score 6.2 (mittel) Remoteangriff ja Datum 14.09.2026 Stand 15.09.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges UNIX Windows Produktbeschreibung Grafana ist eine Analyse- und Visualisierungssoftware. Produkte 14.09.2026 Grafana Grafana <12.4.0 Grafana Grafana <13.0.0 Grafana Grafana <13.1.0 Grafana Grafana <13.2.0 Angriff Angriff Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Grafana ausnutzen, um Sicherheitsvorkehrungen zu umgehen, und um Informationen offenzulegen. CVE Informationen Versionshistorie Feedback zum Advisory geben
A remote, authenticated attacker can exploit a vulnerability in Grafana to bypass security controls and disclose information, with a CVSS base score of 7.1. Affected versions include Grafana prior to 12.4.0, prior to 13.0.0, prior to 13.1.0, and prior to 13.2.0. A mitigation is available, but the article does not specify a fixed version or the exact workaround.