
CVE-2026-33380 A vulnerability in SQL Expressions allows an authenticated attacker to read arbitrary files from the Grafana server's filesystem. Only instances with the sqlExpressio… https://www.cve.org/CVERecord?id=CVE-2026-33380
Post summary
The post introduces CVE‑2026‑33380, a Grafana SQL Expressions vulnerability that grants authenticated attackers file‑read capabilities on the server.
