Main
Vulnerability Database
Exploits
ID:12375 - Exploit for Improper privilege management in Grafana - CVE-2026-21721
ID:12375 - Exploit for Improper privilege management in Grafana - CVE-2026-21721
Published: February 6, 2026
Vulnerability identifier: #VU122159
Vulnerability risk: Low
CVE-ID: CVE-2026-21721
CWE-ID: CWE-269
Exploitation vector: Remote access
Vulnerable software:
Grafana
Grafana
Link to public exploit:
Vulnerability description
The vulnerability allows a remote user to escalate privileges within the application.
The vulnerability exists due to improper privilege management when displaying visualization panels. A remote user can view panels they have no access to.
Remediation
Install updates from vendor's website.