ID:12375 - Exploit for Improper privilege management in Grafana - CVE-2026-21721

 
Main Vulnerability Database Exploits ID:12375 - Exploit for Improper privilege management in Grafana - CVE-2026-21721

ID:12375 - Exploit for Improper privilege management in Grafana - CVE-2026-21721

Published: February 6, 2026


Vulnerability identifier: #VU122159
Vulnerability risk: Low
CVE-ID: CVE-2026-21721
CWE-ID: CWE-269
Exploitation vector: Remote access
Vulnerable software:
Grafana

Link to public exploit:


Vulnerability description

The vulnerability allows a remote user to escalate privileges within the application.

The vulnerability exists due to improper privilege management when displaying visualization panels. A remote user can view panels they have no access to.


Remediation

Install updates from vendor's website.