CVE-2021-39226—Grafana Authentication Bypass Vulnerability
PUBLISHEDvulnerability record
2022-08-25 · last modified June 21, 2025
Metadata
Vulnerability Name
Grafana Authentication Bypass Vulnerability
Description
Grafana contains an authentication bypass vulnerability that allows authenticated and unauthenticated users to view and delete all snapshot data, potentially resulting in complete snapshot data loss.
Known To Be Used in Ransomware Campaigns?
Action
Apply updates per vendor instructions.