
CVE-2026-28383 A request to the Grafana plugin resources endpoint can cause unbounded memory allocation by reading the entire request body into memory. An authenticated user can exp… https://www.cve.org/CVERecord?id=CVE-2026-28383
Post summary
CVE-2026-28383 describes an unbounded memory allocation flaw in the Grafana plugin resources endpoint that can be triggered by an authenticated user, posing a memory exhaustion risk.
