Grafana Labs

Security Scorecard

Score

100A

Total CVEs

11

Patch Rate

91%

10 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical1
High2
Medium0
Low0

Patch Status

Patched10 (91%)
Partial/Workaround1 (9%)
Unpatched0 (0%)

CVEs (11)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-21720Grafana Avatar Image CrashHigh7.5-Patched
CVE-2026-21721Grafana Dashboard Permissions BypassHigh8.1-Workaround
CVE-2026-0712Grafana OSS Open Redirect VulnerabilityN/A--Patched
CVE-2026-0713Grafana API BypassN/A--Patched
CVE-2026-22638Grafana XSS VulnerabilityN/A--Patched
CVE-2026-22639Grafana Alerting ExposureN/A--Patched
CVE-2026-22640Grafana Server Admin Account Delete BypassN/A--Patched
CVE-2026-22641Grafana Data Source Proxy API Bypass VulnerabilityN/A--Patched
CVE-2026-22642Grafana OSS Organization Switching VulnerabilityN/A--Patched
CVE-2026-22643Grafana Unresponsive Dashboard VulnerabilityN/A--Patched