Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.5

Grafana: Unauthenticated Code Execution via User Input

RHSA-2026:3833
Summary

Grafana, a popular data visualization platform, has a security issue that could allow an attacker to execute malicious code without needing a login. This is a serious problem because it could lead to unauthorized access and data theft. To protect yourself, update Grafana to the latest version as soon as possible.

What to do
  • Update redhat grafana to version 0:10.2.6-18.el9_6.
  • Update redhat grafana-debuginfo to version 0:10.2.6-18.el9_6.
  • Update redhat grafana-debugsource to version 0:10.2.6-18.el9_6.
  • Update redhat grafana-selinux to version 0:10.2.6-18.el9_6.
Affected software
VendorProductAffected versionsFix available
redhat grafana <= 0:10.2.6-18.el9_6 0:10.2.6-18.el9_6
redhat grafana-debuginfo <= 0:10.2.6-18.el9_6 0:10.2.6-18.el9_6
redhat grafana-debugsource <= 0:10.2.6-18.el9_6 0:10.2.6-18.el9_6
redhat grafana-selinux <= 0:10.2.6-18.el9_6 0:10.2.6-18.el9_6
Original title
Red Hat Security Advisory: grafana security update
osv CVSS3.1 7.5
Published: 6 Mar 2026 · Updated: 7 Mar 2026 · First seen: 6 Mar 2026