CVE-2026-28383Disclosed before NVD

Grafana plugin resources can lead to unbounded memory allocation

Published
May 13, 2026
Last Modified

📋 Description

A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exploit this to trigger an out-of-memory condition, potentially causing a denial of service.

🎯 Affected products1

  • Grafana

🔗 References (1)