Grafana Labs
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 79 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 25, 2019 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Denial of service via unbounded request body size
Pre-authentication denial of service in the public dashboard query endpoint
Stored XSS in the Geomap panel tile-layer attribution
Operator - Namespaced User Path Traversal
Grafana Data Source Plugin: DoS (OOM) via Negative Interval Injection in $__timeGroup Macro
Grafana plugin resources can lead to unbounded memory allocation
BAC in Snapshot API allows deletion of unauthorized dashboard snapshots
SQL Expressions Read File From Disk
Grafana Live push endpoint allows unbounded memory allocation leading to OOM
Monitor Grafana Labs in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.