CVE-2021-39226

Grafana Authentication Bypass Vulnerability

Grafana contains an authentication bypass vulnerability that allows authenticated and unauthenticated users to view and delete all snapshot data, potentially resulting in complete snapshot data loss. Vendor/Product: Grafana Labs Grafana. Added to CISA KEV 2022-08-25; required action: Apply updates per vendor instructions.

Category: Vulnerability, Known Exploited