TopVuln

High-risk vulnerability digests

CVE-2026-33375

  • MEDIUM

Details

CVSS v3
6.5
NVD published
2026-03-26 21:17:05
EPSS
<0.1% probability · 3.3th percentile — 2026-04-19
Affected versions
cpe:2.3:a:grafana:grafana:*:*:*:*:-:*:*:* cpe:2.3:a:grafana:grafana:*:*:*:*:-:*:*:* cpe:2.3:a:grafana:grafana:*:*:*:*:-:*:*:* cpe:2.3:a:grafana:grafana:*:*:*:*:-:*:*:* cpe:2.3:a:grafana:grafana:*:*:*:*:-:*:*:*
Summary
The Grafana MSSQL data source plugin contains a logic flaw that allows a low-privileged user (Viewer) to bypass API restrictions and trigger a catastrophic Out-Of-Memory (OOM) memory exhaustion, crashing the host container.
Remediation
Not available in our cache.
Exploit info
Not available in our cache.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.