Known Vulnerabilities for Grafana Operator by Grafana
Listed below are 1 of the newest known vulnerabilities associated with "Grafana Operator" by "Grafana".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-75889 json | Grafana Alloy’s prometheus.operator.servicemonitors component allows a user who can create or modify ServiceMonitor resourc... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-15815 json | Grafana OSS and Grafana Enterprise did not safely resolve symbolic links when extracting plugin archives. A crafted plugin ar... | Not Provided | 2026-09-17 | 2026-09-19 |
| CVE-2026-11769 json | We have released version 5.24.0 of the Grafana Operator. This patch includes a MEDIUM severity security fix for a path traver... | Not Provided | 2026-06-13 | 2026-07-23 |