CVE-2022-32276: Grafana

High severity, CVSS 7.5. EPSS: 3.8% chance of exploitation in the next 30 days.

Grafana 8.4.3 allows unauthenticated access via (for example) a /dashboard/snapshot/*?orgId=0 URI. NOTE: the vendor considers this a UI bug, not a vulnerability

Affected products

  • Grafana Grafana: version 8.4.3 only

Published 2022-06-17. Last modified 2026-06-17.