Grafana Labs released Grafana 12.4.2 and issued security updates for the 12.3, 12.2, 12.1, and 11.6 release lines to fix two vulnerabilities tracked as CVE-2026-27876 and CVE-2026-27880. The company described the issues as critical and high severity, indicating that multiple supported versions were affected and required immediate remediation.
Grafana urged users to upgrade to the newly released patched versions as soon as possible to reduce exposure. The advisory was amplified by security community channels, underscoring the urgency for organizations running self-managed Grafana deployments to identify affected instances and apply the vendor fixes promptly.

See real exploitation activity before you spend the cycle.
1 event from the most recent confirmed update back to the earliest known activity.
Grafana announced Grafana 12.4.2 and security patch releases for Grafana 12.3, 12.2, 12.1, and 11.6 to address critical- and high-severity vulnerabilities tracked as CVE-2026-27876 and CVE-2026-27880. The company urged users to upgrade as soon as possible to remediate the issues.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
grafana.com
Open sourceinfosec.pub
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.