Grafana Improper Input Validation Vulnerability Leading to Denial-of-Service in Chromium Browsers

Vulnerability

A denial-of-service vulnerability has been identified in Grafana versions prior to 11.6.2. This issue arises from improper input validation, where excessively long dashboard titles or panel names can cause Chromium browsers to become unresponsive.

Impact

Exploitation of this vulnerability leads to unresponsiveness in Chromium browsers, causing a denial-of-service condition.

Remediation

Users can upgrade to Grafana version 11.6.2 or higher to address this vulnerability.

Added: Jun 18, 2025, 12:44 PM
Updated: Jun 18, 2025, 12:44 PM

Vulnerability Rating

Custom Algorithm
spread
6.2
impact
0.8
exploitability
4.5
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.