CVE-2026-22643: Input Validation
Published Jan 15, 2026
·Updated
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Affected Software
1 affected component
Grafana Grafana<11.6.2
Remediation
Information
Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).
Event History
Jan 15, 2026
CVE Published
via MITRE·01:13 PM
Rejected
via MITRE·01:13 PM
Data Sourced
via NVD·02:16 PM
Description
Jan 22, 2026
Rejected
via MITRE·05:06 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-22643?
The severity of CVE-2026-22643 is considered moderate due to its potential to cause browsers to become unresponsive.
2
How do I fix CVE-2026-22643?
To fix CVE-2026-22643, upgrade Grafana to version 11.6.2 or higher.
3
Which versions of Grafana are affected by CVE-2026-22643?
CVE-2026-22643 affects Grafana versions before 11.6.2.
4
What causes the issue described in CVE-2026-22643?
CVE-2026-22643 is caused by improper input validation of excessively long dashboard titles or panel names.
5
Is there a workaround for CVE-2026-22643?
A recommended workaround for CVE-2026-22643 is to avoid using excessively long titles or names until upgrading to a secure version.