Grafana
cpe:2.3:a:grafana:grafana:*:*:*:*:*:*:*
A vulnerability exists in Grafana when using the SQL datasource with the $__timeGroup macro, leading to a denial-of-service condition by overloading the server. This issue can cause the server to crash, taking over half an hour to recover, unless the server is configured to auto-restart, in which case the impact is minimal.
Exploitation of this vulnerability causes the Grafana server to run out of memory and crash, disrupting service until the server is manually restarted, unless it is set to auto-restart.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.