Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.5

Grafana PCP Plugin Allows Unauthorized Data Access

RHSA-2026:3035
Summary

A vulnerability in Grafana's PCP plugin allows an attacker to access sensitive data without permission. This issue affects Grafana users who use the PCP plugin for monitoring and visualization. To protect your system, update Grafana and its plugins to the latest versions.

What to do
  • Update redhat grafana-pcp to version 0:5.3.0-2.el10_1.
  • Update redhat grafana-pcp-debuginfo to version 0:5.3.0-2.el10_1.
  • Update redhat grafana-pcp-debugsource to version 0:5.3.0-2.el10_1.
Affected software
VendorProductAffected versionsFix available
redhat grafana-pcp <= 0:5.3.0-2.el10_1 0:5.3.0-2.el10_1
redhat grafana-pcp-debuginfo <= 0:5.3.0-2.el10_1 0:5.3.0-2.el10_1
redhat grafana-pcp-debugsource <= 0:5.3.0-2.el10_1 0:5.3.0-2.el10_1
Original title
Red Hat Security Advisory: grafana-pcp security update
osv CVSS3.1 7.5
Published: 23 Feb 2026 · Updated: 7 Mar 2026 · First seen: 6 Mar 2026