7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description
The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes.
Basic Information
ID
CVE-2026-27880
Source
GRAFANA
Published
Mar 27, 2026 at 14:12
Modified
Apr 9, 2026 at 13:49
Affected Product
Vendor
Grafana
Product
Grafana
Version
v12.1.0
Affected Versions
Grafana Grafana v12.1.0
Grafana Grafana v12.2.0
Grafana Grafana v12.3.0
Grafana Grafana v12.4.0
Grafana Grafana v12.2.0
Grafana Grafana v12.3.0
Grafana Grafana v12.4.0