PT-2026-58911 · Bitnami · Grafana

Published

2026-07-14

·

Updated

2026-07-14

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Several Grafana API endpoints, some of them unauthenticated, do not limit the size of the request body before processing it. An attacker can send very large payloads that force excessive memory allocation, potentially exhausting memory and causing a denial of service.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BIT-GRAFANA-2026-33382

Affected Products

Grafana