CyberRota Analysis
AI-GeneratedSeveral Grafana API endpoints are vulnerable due to a lack of request body size limitations, allowing attackers to send excessively large payloads. This can lead to excessive memory allocation, resulting in denial of service conditions. Organizations using Grafana, particularly those exposing API endpoints, should prioritize addressing this vulnerability to mitigate potential service disruptions.
Original NVD Description
Several Grafana API endpoints, some of them unauthenticated, do not limit the size of the request body before processing it. An attacker can send very large payloads that force excessive memory allocation, potentially exhausting memory and causing a denial of service.
Related CVEs
Other vulnerabilities affecting the same vendor(s)