PT-2026-3010 · Grafana · Grafana

Published

2026-01-15

·

Updated

2026-01-20

·

CVE-2026-22643

CVSS v2.0

8.7

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:P
Name of the Vulnerable Software and Affected Versions Grafana versions prior to 11.6.2
Description An excessively long dashboard title or panel name can cause Chromium browsers to become unresponsive due to improper input validation.
Recommendations Update to Grafana version 11.6.2 or higher.

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2026-00583
CVE-2026-22643

Affected Products

Grafana