vendor

grafana

3 thingsrelated by NVD

Its products

grafana 2 pyroscope 1

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

grafana: Grafana: Session takeover via Auth Proxy cache key collision
CVE-2026-14199
Severity high
pyroscope: sensitive COS SecretKey exposed in plaintext via configuration API due to missing type protection
CVE-2025-41118
Severity critical
Grafana: Grafana: Information disclosure of secure settings via contact point modification
CVE-2025-12141
Severity medium