CVE-2026-27879
EUVD-2026-1663627.03.2026, 15:16
A resample query can be used to trigger out-of-memory crashes in Grafana.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| grafana | grafana | 𝑥 < 8.0.0 |
| grafana | grafana | 11.6.14 ≤ 𝑥 < 12.0.0 |
| grafana | grafana | 12.1.10 ≤ 𝑥 < 12.2.0 |
| grafana | grafana | 12.2.8 ≤ 𝑥 < 12.3.0 |
| grafana | grafana | 12.3.6 ≤ 𝑥 < 12.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-787 - Out-of-bounds WriteThe software writes data past the end, or before the beginning, of the intended buffer.
- CWE-400 - Uncontrolled Resource ConsumptionThe software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.