{"api_version":"v1","generated_at":"2026-10-09T10:05:00+00:00","product":{"cve_count":30,"evidence_gap_note":"This CVE identity is linked to an existing Lifecycle product history.","id":"security:cve-grafana-grafana-766a3e3089ef","lifecycle_state":"covered","linked_lifecycle_url":"https://lifecycle.blacktree.nl/targets/grafana","name":"grafana","next_cursor":"djE6NTA","observations":[{"affected":"8.0.0 < 11.6.14; 12.0.0 < 12.1.10; 12.2.0 < 12.2.8; 12.3.0 < 12.3.6; 12.4.0 < 12.4.2","affected_versions_present":true,"cve_id":"CVE-2026-27879","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27879","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T17:22:24.918Z","patch_url":"","primary_source":"","published":"2026-03-27T14:28:56.133Z"},{"affected":"8.1.0 < 11.6.14; 12.0.0 < 12.1.10; 12.2.0 < 12.2.8; 12.3.0 < 12.3.6; 12.4.0 < 12.4.2","affected_versions_present":true,"cve_id":"CVE-2026-28375","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-28375","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T17:22:22.927Z","patch_url":"","primary_source":"","published":"2026-03-27T14:26:19.270Z"},{"affected":"11.6.0 < 11.6.14; 12.0.0 < 12.1.10; 12.2.0 < 12.2.8; 12.3.0 < 12.3.6; 12.4.0 < 12.4.2","affected_versions_present":true,"cve_id":"CVE-2026-27876","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27876","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T17:22:25.648Z","patch_url":"https://www.cyber.gc.ca/en/alerts-advisories/grafana-security-advisory-av26-285","primary_source":"","published":"2026-03-27T14:24:36.771Z"},{"affected":"v12.1.0 < v12.1.10; v12.2.0 < v12.2.8; v12.3.0 < v12.3.6; v12.4.0 < v12.4.2","affected_versions_present":true,"cve_id":"CVE-2026-27880","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27880","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T17:22:49.478Z","patch_url":"https://www.cyber.gc.ca/en/alerts-advisories/grafana-security-advisory-av26-285","primary_source":"","published":"2026-03-27T14:12:20.075Z"},{"affected":"9.3.0 < 11.6.14; 12.0.0 < 12.1.10; 12.2.0 < 12.2.8; 12.3.0 < 12.3.6; 12.4.0 < 12.4.2","affected_versions_present":true,"cve_id":"CVE-2026-27877","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27877","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T17:22:48.099Z","patch_url":"","primary_source":"","published":"2026-03-27T14:02:11.889Z"},{"affected":"v11.0.0 < v12.4.1","affected_versions_present":true,"cve_id":"CVE-2026-21725","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-21725","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T17:22:30.280Z","patch_url":"","primary_source":"","published":"2026-02-25T12:35:43.104Z"},{"affected":"12.0.x < 12.0.2+security-01; 11.6.x < 11.6.3+security-01; 11.5.x < 11.5.6+security-01; 11.4.x < 11.4.6+security-01; 11.3.x < 11.3.8+security-01","affected_versions_present":true,"cve_id":"CVE-2025-6197","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6197","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-07-18T13:46:01.307Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-07-18T07:48:22.523Z"},{"affected":"12.0.x < 12.0.2+security-01; 11.6.x < 11.6.3+security-01; 11.5.x < 11.5.6+security-01; 11.4.x < 11.4.6+security-01; 11.3.x < 11.3.8+security-01","affected_versions_present":true,"cve_id":"CVE-2025-6023","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6023","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-07-18T13:46:45.354Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-07-18T07:48:15.972Z"},{"affected":"10.4.x < 10.4.19+security-01; 11.2.x < 11.2.10+security-01; 11.3.x < 11.3.7+security-01; 11.4.x < 11.4.5+security-01; 11.5.x < 11.5.5+security-01; 11.6.x < 11.6.2+security-01; 12.0.x < 12.0.1+security-01","affected_versions_present":true,"cve_id":"CVE-2025-3415","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-3415","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-07-17T14:05:19.284Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-07-17T10:13:14.717Z"},{"affected":"< 11.6.2","affected_versions_present":true,"cve_id":"CVE-2025-1088","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-1088","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-11-23T15:34:20.989Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-06-18T09:54:30.329Z"},{"affected":"11.6.0 < 11.6.0+security-01; 11.5.0 < 11.5.3+security-01; 11.4.0 < 11.4.3+security-01; 11.3.0 < 11.3.5+security-01; 11.2.0 < 11.2.8+security-01; 10.4.0 < 10.4.17+security-01","affected_versions_present":true,"cve_id":"CVE-2025-3454","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-3454","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-06-02T12:04:24.348Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-06-02T10:34:09.254Z"},{"affected":"11.6.0 < 11.6.1+security-01","affected_versions_present":true,"cve_id":"CVE-2025-3260","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-3260","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2026-02-26T18:27:45.357Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-06-02T10:06:39.039Z"},{"affected":"12.0.0 < 12.0.1; 11.6.1 < 11.6.2; 11.5.4 < 11.5.5; 11.4.4 < 11.4.5; 11.3.6 < 11.3.7; 11.2.9 < 11.2.10; 10.4.18 < 10.4.19","affected_versions_present":true,"cve_id":"CVE-2025-3580","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-3580","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-07-17T10:28:18.011Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-05-23T13:44:45.974Z"},{"affected":"10.4.18+security-01 < 10.4.19; 11.2.9+security-01 < 11.2.10; 11.3.6+security-01 < 11.3.7; 11.4.4+security-01 < 11.4.5; 11.5.4+security-01 < 11.5.5; 11.6.1+security-01 < 11.6.2; 12.0.0+security-01 < 12.0.1","affected_versions_present":true,"cve_id":"CVE-2025-4123","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-4123","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2026-04-29T19:56:35.801Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-05-22T07:44:09.491Z"},{"affected":"11.6.0 < 11.6.0+security-01; 11.5.0 < 11.5.3+security-01; 11.4.0 < 11.4.3+security-01; 11.3.0 < 11.3.5+security-01; 11.2.0 < 11.2.8+security-01","affected_versions_present":true,"cve_id":"CVE-2025-2703","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-2703","fixed":"Users are strongly recommended to upgrade to the latest release of Incoming Goods Suite (>= 1.2.1).","last_modified":"2025-06-10T10:53:48.851Z","patch_url":"https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf","primary_source":"","published":"2025-04-23T11:36:02.852Z"},{"affected":"11.4.0 < 11.4.1; 11.3.0 < 11.3.3; 11.2.0 < 11.2.6; 11.1.0 < 11.1.11; 10.4.0 < 10.4.15","affected_versions_present":true,"cve_id":"CVE-2024-11741","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-11741","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-05-09T20:03:33.716Z","patch_url":"","primary_source":"","published":"2025-01-31T15:12:29.122Z"},{"affected":"10.4.0","affected_versions_present":true,"cve_id":"CVE-2024-10452","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-10452","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-10-29T15:35:35.167Z","patch_url":"","primary_source":"","published":"2024-10-29T15:16:22.405Z"},{"affected":"11.0.0 < 11.0.5; 11.1.0 < 11.1.6; 11.2.0 < 11.2.1; 11.0.0 < 11.0.6; 11.1.0 < 11.1.7; 11.2.0 < 11.2.2","affected_versions_present":true,"cve_id":"CVE-2024-9264","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-9264","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-03-14T10:03:06.561Z","patch_url":"","primary_source":"","published":"2024-10-18T03:20:52.489Z"},{"affected":"8.5.0 < 10.3.10; 10.4.0 < 10.4.9; 11.0.0 < 11.0.5; 11.1.0 < 11.1.6; 11.2.0 < 11.2.1","affected_versions_present":true,"cve_id":"CVE-2024-8118","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-8118","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-26T19:06:40.196Z","patch_url":"","primary_source":"","published":"2024-09-26T18:46:07.048Z"},{"affected":"11.1.0 < 11.1.1; 11.1.2 < 11.1.3","affected_versions_present":true,"cve_id":"CVE-2024-6322","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-6322","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-23T15:33:04.210Z","patch_url":"","primary_source":"","published":"2024-08-20T17:52:06.232Z"},{"affected":"9.5.0 < 9.5.18; 10.0.0 < 10.0.13; 10.1.0 < 10.1.9; 10.2.0 < 10.2.6; 10.3.0 < 10.3.5","affected_versions_present":true,"cve_id":"CVE-2024-1313","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-1313","fixed":"10.4.0","last_modified":"2025-02-13T17:27:36.664Z","patch_url":"https://grafana.com/security/security-advisories/cve-2024-1313/","primary_source":"","published":"2024-03-26T17:24:25.956Z"},{"affected":"8.5.0 < 9.5.7; 10.0.0 < 10.0.12; 10.1.0 < 10.1.8; 10.2.0 < 10.2.5; 10.3.0 < 10.3.4","affected_versions_present":true,"cve_id":"CVE-2024-1442","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-1442","fixed":"For Red Hat Advanced Cluster Management for Kubernetes, see the following documentation for details on how to install the images: https://docs.redhat.com/en/documentation/red_hat_advanced_cluster_management_for_kubernetes/2.12/html/install/installing","last_modified":"2024-11-22T12:04:45.739Z","patch_url":"https://access.redhat.com/security/cve/CVE-2024-1442","primary_source":"","published":"2024-03-07T17:45:43.993Z"},{"affected":"2.5.0 < 9.5.16; 10.0.0 < 10.0.11; 10.1.0 < 10.1.7; 10.2.0 < 10.2.4; 10.3.0 < 10.3.3","affected_versions_present":true,"cve_id":"CVE-2023-6152","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-6152","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-15T00:10:28.890Z","patch_url":"","primary_source":"","published":"2024-02-13T21:38:01.404Z"},{"affected":"9.5.0 < 9.5.4; 9.4.0 < 9.4.13; 9.3.0 < 9.3.16; 9.2.0 < 9.2.20; 6.7.0 < 8.5.27","affected_versions_present":true,"cve_id":"CVE-2023-3128","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-3128","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T16:49:48.654Z","patch_url":"","primary_source":"","published":"2023-06-22T20:14:00.805Z"},{"affected":"8.0.0 < 8.5.26; 9.0.0 < 9.2.19; 9.3.0 < 9.3.15; 9.4.0 < 9.4.12; 9.5.0 < 9.5.3","affected_versions_present":true,"cve_id":"CVE-2023-2183","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-2183","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T16:40:15.277Z","patch_url":"","primary_source":"","published":"2023-06-06T18:04:26.485Z"},{"affected":"9.4.0 < 9.4.12; 9.5.0 < 9.5.3","affected_versions_present":true,"cve_id":"CVE-2023-2801","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-2801","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T16:45:38.503Z","patch_url":"","primary_source":"","published":"2023-06-06T18:03:32.459Z"},{"affected":"9.1.0 < 9.2.17; 9.3.0 < 9.3.13; 9.4.0 < 9.5.0","affected_versions_present":true,"cve_id":"CVE-2023-1387","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-1387","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T16:39:22.007Z","patch_url":"","primary_source":"","published":"2023-04-26T13:47:16.914Z"},{"affected":"8.0.0 < 8.5.22; 9.0.0 < 9.2.15; 9.3.0 < 9.3.11","affected_versions_present":true,"cve_id":"CVE-2023-1410","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-1410","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-03-04T21:22:03.229Z","patch_url":"","primary_source":"","published":"2023-03-23T07:48:56.246Z"},{"affected":">= 9.2, < 9.2.10; >= 9.3, < 9.3.4","affected_versions_present":true,"cve_id":"CVE-2023-22462","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-22462","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T04:55:37.854Z","patch_url":"https://github.com/grafana/grafana/commit/db83d5f398caffe35c5846cfa7727d1a2a414165","primary_source":"","published":"2023-03-02T00:06:59.876Z"},{"affected":"7.0.0 < 8.5.21; 9.0.0 < 9.2.13; 9.3.0 < 9.3.8","affected_versions_present":true,"cve_id":"CVE-2023-0594","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-0594","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/2789521 and https://access.redhat.com/documentation/en-us/red_hat_ceph_storage/5/html-single/upgrade_guide/index For supported configurations, refer to: https://access.redhat.com/articles/1548993","last_modified":"2026-01-28T04:55:36.581Z","patch_url":"https://access.redhat.com/security/cve/CVE-2023-0594","primary_source":"","published":"2023-03-01T15:36:43.881Z"},{"affected":"8.1.0 < 8.5.21; 9.0.0 < 9.2.13; 9.3.0 < 9.3.8","affected_versions_present":true,"cve_id":"CVE-2023-0507","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-0507","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/2789521 and https://access.redhat.com/documentation/en-us/red_hat_ceph_storage/5/html-single/upgrade_guide/index For supported configurations, refer to: https://access.redhat.com/articles/1548993","last_modified":"2026-01-28T04:55:39.324Z","patch_url":"https://access.redhat.com/security/cve/CVE-2023-0507","primary_source":"","published":"2023-03-01T15:35:55.259Z"},{"affected":">= 8.3.0-beta1, < 9.2.10","affected_versions_present":true,"cve_id":"CVE-2022-23498","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23498","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-01-28T04:55:21.088Z","patch_url":"https://github.com/grafana/grafana/security/advisories/GHSA-2j8f-6whh-frc8","primary_source":"","published":"2023-02-03T21:34:58.677Z"},{"affected":">= 9.0, < 9.2.10; >= 9.3, < 9.3.4; >= 8.1, < 8.5.16","affected_versions_present":true,"cve_id":"CVE-2022-23552","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23552","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T04:55:35.339Z","patch_url":"https://github.com/grafana/grafana/pull/62143","primary_source":"","published":"2023-01-27T22:59:16.675Z"},{"affected":"< 8.5.16; >= 9.0.0, < 9.2.8","affected_versions_present":true,"cve_id":"CVE-2022-39324","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-39324","fixed":"For details on how to apply this update, see Upgrade a Red Hat Ceph Storage cluster using cephadm in the Red Hat Storage Ceph Upgrade Guide.(https://access.redhat.com/documentation/en-us/red_hat_ceph_storage)","last_modified":"2026-01-28T04:55:22.240Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-39324","primary_source":"","published":"2023-01-27T22:42:01.550Z"},{"affected":">= v9.0.0-beta1, < 9.2.4; < 8.5.15","affected_versions_present":true,"cve_id":"CVE-2022-39307","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-39307","fixed":"For details on how to apply this update, see Upgrade a Red Hat Ceph Storage cluster using cephadm in the Red Hat Storage Ceph Upgrade Guide.(https://access.redhat.com/documentation/en-us/red_hat_ceph_storage)","last_modified":"2026-01-28T04:55:23.388Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-39307","primary_source":"","published":"2022-11-09T00:00:00.000Z"},{"affected":"< 8.5.15; >= 9.v9.0.0-beta1, < 9.2.4","affected_versions_present":true,"cve_id":"CVE-2022-39306","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-39306","fixed":"For details on how to apply this update, see Upgrade a Red Hat Ceph Storage cluster using cephadm in the Red Hat Storage Ceph Upgrade Guide.(https://access.redhat.com/documentation/en-us/red_hat_ceph_storage)","last_modified":"2026-01-28T04:55:25.735Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-39306","primary_source":"","published":"2022-11-09T00:00:00.000Z"},{"affected":">= 9.2.0, < 9.2.4","affected_versions_present":true,"cve_id":"CVE-2022-39328","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-39328","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-01-28T04:55:26.896Z","patch_url":"","primary_source":"","published":"2022-11-08T00:00:00.000Z"},{"affected":">= 9.0.0, < 9.1.8; >= 8.5.0, < 8.5.14","affected_versions_present":true,"cve_id":"CVE-2022-39229","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-39229","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T16:50:38.466Z","patch_url":"https://github.com/grafana/grafana/commit/5644758f0c5ae9955a4e5480d71f9bef57fdce35","primary_source":"","published":"2022-10-13T00:00:00.000Z"},{"affected":">= v5.0.0-beta1, < 8.5.14; >= 9.0.0, < 9.1.8","affected_versions_present":true,"cve_id":"CVE-2022-39201","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-39201","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T16:50:44.284Z","patch_url":"https://github.com/grafana/grafana/commit/b571acc1dc130a33f24742c1f93b93216da6cf57","primary_source":"","published":"2022-10-13T00:00:00.000Z"},{"affected":"< 8.5.14; >= 9.0.0, < 9.1.8","affected_versions_present":true,"cve_id":"CVE-2022-31130","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31130","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T16:50:57.182Z","patch_url":"https://github.com/grafana/grafana/security/advisories/GHSA-jv32-5578-pxjc","primary_source":"","published":"2022-10-13T00:00:00.000Z"},{"affected":"< 8.5.14; >= 9.0.0, < 9.1.8","affected_versions_present":true,"cve_id":"CVE-2022-31123","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31123","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T04:55:28.143Z","patch_url":"https://github.com/grafana/grafana/security/advisories/GHSA-rhxj-gh46-jvw8","primary_source":"","published":"2022-10-13T00:00:00.000Z"},{"affected":"< 8.5.13; >= 9.0.0, < 9.0.9; >= 9.1.0, < 9.1.6","affected_versions_present":true,"cve_id":"CVE-2022-36062","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-36062","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T04:55:30.640Z","patch_url":"https://github.com/grafana/grafana/security/advisories/GHSA-p978-56hq-r492","primary_source":"","published":"2022-09-22T00:00:00.000Z"},{"affected":"> 9.0.0, < 9.1.6; < 8.5.13","affected_versions_present":true,"cve_id":"CVE-2022-35957","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-35957","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-01-28T04:55:29.297Z","patch_url":"","primary_source":"","published":"2022-09-20T00:00:00.000Z"},{"affected":">= 5.3, < 8.3.10; >= 8.4.0, < 8.4.10; >= 8.5.0, < 8.5.9; >= 9.0.0, < 9.0.3","affected_versions_present":true,"cve_id":"CVE-2022-31107","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31107","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T04:55:31.786Z","patch_url":"https://grafana.com/docs/grafana/next/release-notes/release-notes-8-4-10/","primary_source":"","published":"2022-07-15T12:30:14.000Z"},{"affected":">= 9.0.0, < 9.0.3; >= 8.5.0, < 8.5.9; >= 8.4.0, < 8.4.10; >= 8.0.0, < 8.3.10","affected_versions_present":true,"cve_id":"CVE-2022-31097","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31097","fixed":"For details on how to apply this update, see Upgrade a Red Hat Ceph Storage cluster using cephadm in the Red Hat Storage Ceph Upgrade Guide.(https://access.redhat.com/documentation/en-us/red_hat_ceph_storage)","last_modified":"2026-01-28T04:55:34.182Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-31097","primary_source":"","published":"2022-07-15T12:10:10.000Z"},{"affected":">= 7.4.0-beta1, < 7.5.16; >= 8.0.0, < 8.5.3","affected_versions_present":true,"cve_id":"CVE-2022-29170","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-29170","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T18:24:44.628Z","patch_url":"https://github.com/grafana/grafana/security/advisories/GHSA-9rrr-6fq2-4f99","primary_source":"","published":"2022-05-20T16:10:12.000Z"},{"affected":">= 8.1.0-beta1, < 8.4.6","affected_versions_present":true,"cve_id":"CVE-2022-24812","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24812","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T04:55:33.003Z","patch_url":"https://github.com/grafana/grafana/security/advisories/GHSA-82gq-xfg3-5j7v","primary_source":"","published":"2022-04-12T17:00:19.000Z"},{"affected":">= 5.0.0-beta1, < 7.5.15; >= 8.0.0, < 8.3.5","affected_versions_present":true,"cve_id":"CVE-2022-21713","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-21713","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T19:06:38.430Z","patch_url":"https://github.com/grafana/grafana/pull/45083","primary_source":"","published":"2022-02-08T20:50:17.000Z"},{"affected":">= 3.0-beta1, < 7.5.15; >= 8.0.0, < 8.3.5","affected_versions_present":true,"cve_id":"CVE-2022-21703","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-21703","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T19:06:44.591Z","patch_url":"https://github.com/grafana/grafana/pull/45083","primary_source":"","published":"2022-02-08T20:40:10.000Z"},{"affected":">= 2.0.0-beta1, < 7.5.15; >= 8.0.0, < 8.3.5","affected_versions_present":true,"cve_id":"CVE-2022-21702","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-21702","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T18:22:39.255Z","patch_url":"https://github.com/grafana/grafana/commit/27726868b3d7c613844b55cd209ca93645c99b85","primary_source":"","published":"2022-02-08T19:40:11.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"grafana"}}
