Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.5

Vulnerability in Grafana Can Allow Remote Code Execution

RHSA-2026:3831
Summary

A security update is available for Grafana, a popular data visualization tool. This update fixes a vulnerability that could allow an attacker to execute malicious code on a server running Grafana, potentially leading to unauthorized access and data theft. IT teams should update Grafana to the latest version to protect their systems.

What to do
  • Update redhat grafana to version 0:10.2.6-21.el10_0.
  • Update redhat grafana-debuginfo to version 0:10.2.6-21.el10_0.
  • Update redhat grafana-debugsource to version 0:10.2.6-21.el10_0.
  • Update redhat grafana-selinux to version 0:10.2.6-21.el10_0.
Affected software
VendorProductAffected versionsFix available
redhat grafana <= 0:10.2.6-21.el10_0 0:10.2.6-21.el10_0
redhat grafana-debuginfo <= 0:10.2.6-21.el10_0 0:10.2.6-21.el10_0
redhat grafana-debugsource <= 0:10.2.6-21.el10_0 0:10.2.6-21.el10_0
redhat grafana-selinux <= 0:10.2.6-21.el10_0 0:10.2.6-21.el10_0
Original title
Red Hat Security Advisory: grafana security update
osv CVSS3.1 7.5
Published: 6 Mar 2026 · Updated: 7 Mar 2026 · First seen: 6 Mar 2026