Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.1

Grafana: Unauthenticated User Can Access Sensitive Data

RHSA-2026:2914
Summary

Grafana is updating to fix a security issue that allows unauthorized users to access sensitive information without a password. If you use Grafana, update to the latest version to prevent potential data exposure. Update your Grafana installation to the latest version as soon as possible.

What to do
  • Update redhat grafana to version 0:10.2.6-22.el10_1.
  • Update redhat grafana-debuginfo to version 0:10.2.6-22.el10_1.
  • Update redhat grafana-debugsource to version 0:10.2.6-22.el10_1.
  • Update redhat grafana-selinux to version 0:10.2.6-22.el10_1.
Affected software
VendorProductAffected versionsFix available
redhat grafana <= 0:10.2.6-22.el10_1 0:10.2.6-22.el10_1
redhat grafana-debuginfo <= 0:10.2.6-22.el10_1 0:10.2.6-22.el10_1
redhat grafana-debugsource <= 0:10.2.6-22.el10_1 0:10.2.6-22.el10_1
redhat grafana-selinux <= 0:10.2.6-22.el10_1 0:10.2.6-22.el10_1
Original title
Red Hat Security Advisory: grafana security update
osv CVSS3.1 8.1
Published: 19 Feb 2026 · Updated: 7 Mar 2026 · First seen: 6 Mar 2026